This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Hi, all. Is there any way to restrict remote access user by MAC address?

Hi, all. We have settings that our users can use VPN (remote access (SSL) ) to access our internal network.

Now, we want to restrict that only designated devices are allowed to do that. Means, public PCs will not be allowed to access our internal network even if the VPN connection was established.

 

We have created a MAC list under "Network definitions", and apply this list to the firewall rule. The thing is, after applying the mac addresses list to the rule, all connections from that VPN user were failed even if we have added the Mac addresses of all NICs on that device. If not applying the mac list, the network went back to normal.

 

Any answer will be highly appreciated.

 

Thanks.



This thread was automatically locked due to age.
Parents
  • Hi Eric and welcome to the UTM Community!

    The source MAC address in all packets received from the Internet will be that of your ISP's last-hop router in front of your UTM.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hi Eric and welcome to the UTM Community!

    The source MAC address in all packets received from the Internet will be that of your ISP's last-hop router in front of your UTM.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data