Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
30-6
Cisco ASDM User Guide
OL-16647-01
Chapter 30 Configuring ARP Inspection and Bridging Parameters
Customizing the MAC Address Table
Add/Edit MAC Address Entry
The Add/Edit MAC Address Entry dialog box lets you add or edit a static MAC address entry. Normally,
MAC addresses are added to the MAC address table dynamically as traffic from a particular MAC
address enters an interface. One benefit to adding static entries is to guard against MAC spoofing. If a
client with the same MAC address as a static entry attempts to send traffic to an interface that does not
match the static entry, then the security appliance drops the traffic and generates a system message.
Fields
Interface Name—Sets the interface associated with the MAC address.
MAC Address—Sets the MAC address.
Modes
The following table shows the modes in which this feature is available:
MAC Learning
The MAC Learning pane lets you disable MAC address learning on an interface. By default, each
interface automatically learns the MAC addresses of entering traffic, and the security appliance adds
corresponding entries to the MAC address table. You can disable MAC address learning if desired;
however, unless you statically add MAC addresses to the table, no traffic can pass through the security
appliance.
Fields
Interface—Shows the interface name.
MAC Learning Enabled—Shows if MAC learning is enabled, Yes or No.
Enable—Enables MAC learning to the selected interface.
Disable—Disables MAC learning to the selected interface.
Modes
The following table shows the modes in which this feature is available:
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• • •
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
• • •