Hi,
I have tried to use this feature on Astaro, and I read the KB article which said that "This functionality provides stricter security as it prevents users from setting a static IP address and potentially gaining access to filters based on that IP address."
I followed the steps in the article but I cannot get it work as it should be or as how I understand it
I have created a mac address definition for a host and in the FW rules I created new rules that drop packets from that host,
when changing the IP address of the host the rule doesn't apply ,and the packets get through the FW because there are rules to allow them for specific IP addresses.
So I am really confused about it, should I configure the mac addresses for the host which are allowed IP addresses.?What if I want to deny a specific host no matter what IP address it has?
Thanks and Happy new year [:)]
This thread was automatically locked due to age.