Failed configuring an alternate MAC address

When booting my SPARC T4-1 with alt-mac-addrs configured on SR-IOV I see:
Boot device: disk  File and args:
SunOS Release 5.11 Version 11.2 64-bit
Copyright (c) 1983, 2014, Oracle and/or its affiliates. All rights reserved.
WARNING: failed configuring an alternate MAC address for ldoms-igb1.vf5 : err 28, diag 24
WARNING: failed configuring an alternate MAC address for ldoms-igb1.vf4 : err 28, diag 24
Solaris 11 is up-to-date:
Version: 0.5.11 (Oracle Solaris 11.2.5.5.0)
Logical Domains Manager (v 3.1.1.2.2)
What's wrong? How to fix?
Thanks,
Marcel

Output above is from the Control Domain. vf4 and vf5 are not assigend to a guest.
It seems there are troubles if alt-mac-addrs and port-vlan-id is set?
I first setup the VF then add it to guests.
/SYS/MB/NET0/IOVNET.PF1.VF4               VF     pci_0
[pci@400/pci@2/pci@0/pci@6/network@0,89]
    Class properties [NETWORK]
        mac-addr = 00:14:4f:fb:77:05
        alt-mac-addrs = 00:14:4f:fb:53:43, 00:14:4f:f9:1c:56, 00:14:4f:f8:e9:fe, 00:14:4f:f8:ed:ab, 00:14:4f:f9:de:68
        port-vlan-id = 20
        mtu = 1500
/SYS/MB/NET0/IOVNET.PF1.VF5               VF     pci_0
[pci@400/pci@2/pci@0/pci@6/network@0,8b]
    Class properties [NETWORK]
        mac-addr = 00:14:4f:fb:09:b9
        alt-mac-addrs = 00:14:4f:fb:59:94, 00:14:4f:f8:c5:51, 00:14:4f:f8:d7:ef, 00:14:4f:f9:e4:f6, 00:14:4f:fa:68:8c
        port-vlan-id = 200
        mtu = 1500

Similar Messages

  • My "no filtering" test came back FAIL. It says MAC address filtering is enabled. Help.

    My printer is HP Office Jet 6700 Premium.   Mac OS 10.5.8   

    Hi,
    Please verify your router configuration:
    First, verify if the router Mac Filtering is configured. if so, make sure to add the printer Mac Address as an allowed device.
    Verify the Router Wireless security configuration - If the WiFi security is set as WEP, make sure the authentication type is set as either Open or Auto. the Shared Authentication type is not supported by the printer.
    For any further guidnance, please clarify your router model, I will do the best to provide you the steps from my experience, or you may contact the router service provider to get additional assistant with the router configuration.
    Regards,
    Shlomi
    Say thanks by clicking the Kudos thumb up in the post.
    If my post resolve your problem please mark it as an Accepted Solution

  • CSCuj20687 - Enh Configuring static multicast mac-address for N6K NLB implementation

    Hi
    Does we fix release avilable for nexus 6k?

    It seems that all 7.x releases should have this enhancement.  The release note would also seem to indicate that
    6.0(2)N2(1) has the fix for the Nexus 6000.
    Are you experiencing something different?

  • Fails to learn mac address on Fiber interface with ISP

    Hi,
    We have a problem to bring a new 3750 switch interface up with the ISP.
    Current interface configuration on the router 7500 with SC/Single mode 1000 Base LX is
    interface GigabitEthernet4/0/0
    description ###### ISP #######
    ip address 1.1.1.2 255.255.255.252
    no ip redirects
    no ip unreachables
    load-interval 30
    no negotiation auto
    no cdp enable
    end
    works perfectly fine.
    we are trying to move this link to a Cisco 3750G on SFP single mode 1000 baase LX with the same configuration as below
    interface GigabitEthernet1/0/51
    no switchport
    ip address 1.1.1.2 255.255.255.252
    load-interval 30
    no ip redirects
    no ip unreachables
    no cdp enable
    speed nonegotiate
    we dont get any errors on the link but it fails to learn the mac address from the isp.
    checked the following.
    1. tried changing the SFP and the fiber.
    2. checked internally connecting back to back with another cisco device - works fine .
    3. checked with the isp for any static arp on their side and it is a no.
    I am wondering why it fails to learn the mac-address when it can self ping its own ip address and also the layer stays up with no errors on both the sides.
    Thanks

    Doesn't feel like a fiber/optical issue but a configuration mismatch on one of the end devices.

  • Configuring Virtual MAC Addresses on ASA

    Hello,
    I configure the virtual MAC address for a interface on ASA 5520, will enter the following command on the active unit:
       failover mac address Inside 0012.3456.789a 0023.4567.89ab
    The active MAC address is of the same as the Inside's burned-in MAC address of the active unit.
    Similarly, the standby MAC address is of the same as the Inside's burned-in MAC address of the standby unit.
    Do I get the effect of failover mac address command?
    Thank you for your cooperation in advance.

    Hi Bro
    That’s fine really. There’s nothing wrong if you’ve configured the active MAC address the same as the Inside's burned-in MAC address of the active unit.
    In an Active/Standby failover, the MAC addresses for the primary unit are always associated with the active IP addresses. If the secondary unit boots first and becomes active, it uses the burned-in MAC address for its interfaces. When the primary unit comes online, the secondary unit obtains the MAC addresses from the primary unit. The change can disrupt network traffic.
    You can configure virtual MAC addresses for each interface to ensure that the secondary unit uses the correct MAC addresses when it is the active unit, even if it comes online before the primary unit. If you do not specify virtual MAC addresses the failover pair uses the burned-in NIC addresses as the MAC addresses.
    P/S: If you think this comment is useful, please do rate them nicely :-)

  • Multicast mac-address Nexus 7k

    Hi,
    i'm going to use Nexus 7000 in Data Center.
    During analysis configuration, I need define mac-address-static configuration for multicast mac address for Firewall Checkpoint cluster.
    In "Layer 2 Switching Configuration Guide, Release 4.1.pdf" documentation speak about
    "Configuring a Static MAC Address
    [..]You cannot configure broadcast or multicast addresses as static MAC addresses[..]"
    Have you a suggestion to manage this problem and why is it not possible configure mac address static multicast?
    Regards
    Dino

    Joseph - The ClusterXL A/A configuration is a variation of the  StoneSoft or Rainfinity clustering technologies that have been used to  cluster Solaris and other *NIX flavored servers and firewalls for  years.  (In fact, StoneSoft filed suit against Check Point in Europe 8  or 9 years ago for patent violations, and lost.)  These configurations  were very common on Check Point clusters running on Solaris from the  late 90's forward - and, as you describe, have unicast IP's with a  multicast MAC for the VIP.  Even from the days of installing these on  the brand new (at the time) 2900 series switches you had to do exactly  as you state above - static MAC entries (or in some cases port mirrors)  so traffic was directed to both active switch ports.  In Active/Passive  mode Check Point ClusterXL clusters are almost always "plug and play"  today - rarely do the switches need anything beyond speed/duplex  settings.  The VIP assumes the MAC of the physical NIC it is currently  bound to, and therefore there are no issues as far as switch config or  proxy ARP entries on the gateways.  All of these issues have to do with  traffic flowing to the VIP and through the firewall, and the ability of  the switch to correctly identify which physical switch port(s) the VIP  is currently patched in to.  This is one of three types of traffic  associated with ClusterXL itself.  The second is state synchronization,  which is accomplished through a crossover cable and therefore not  relevant.  Even when using a switch state sync is a typical TCP 18181  connection from a unicast IP/unicast MAC on one gateway to the other  through a dedicated interface pair.
    The challenge described by CJ is not with the traffic  flowing to the VIP, however.  It is an entirely separate process - Check  Point Clustering Protocol (aka CPHA if filtering in WireShark) is  essentially the heart beat traffic.  Every interface pair within a Check  Point cluster continually communicates with its "partner" interface on  the other cluster members.  If any packet takes over 100ms or shows more  than a 5% loss the gateway is forced in to "probing" mode where it  falls back to ICMP to determine the state of the other cluster member.   Depending on the CPHA timing settings an active gateway will failover to  the passive in as quickly as 500ms or so.  ClusterXL will fail over the  entire gateway to the standby to avoid complications with asynchronous  routing.
    Out of the box, CCP is configured to use  multicast, but it supports broadcast as well. To change this in real  time (no restart required) simply issue the command:
    cphaconf set_ccp {broadcast/multicast}
    At  the Ethernet level, CCP traffic will always have a source MAC of the  Magic MAC of 00:00:00:00:xx:yy where XX is the “Cluster ID” – something  identical on each cluster member but unique from one cluster to another,  and YY is the cluster priority (00, 01, etc.) based on the priority  levels set on cluster members within Dashboard on the cluster object.  The destination MAC will always be the Ethernet broadcast of  ff:ff:ff:ff:ff:ff.
    At the IP level the source of CCP  will always appear as 0.0.0.0. The destination will always be the  network address (ie, x.x.x.0).
    Similarly in multicast mode you will see the same traffic  at the IP level but at the Ethernet level the destination will now be a  IPv4 multicast MAC (ie, 01:00:5e:4e:c2:1e).
    In a tcpdump  with the –w flag opened in WireShark and a filter applied of just “cpha”  (without the quotes) you should see a continual stream of traffic with  the same source and destination IPs on all packets (0.0.0.0 and network  IP), the destination of either a bcast or mcast MAC and the source MAC  alternating between 00:00:00:00:xx:00 and 00:00:00:00:xx:01.
    Long story short, the problem CJ is describing is a  behavior on the 7K where a packet capture taken on the Check Point  interface itself (ie, tcpdump –i eth0 –w capture.cap) ONLY shows CPHA  traffic from it’s own source MAC and no packets from it’s partner. A  tcpdump on the 7K itself will show traffic from both.
    As CJ mentioned, a simple NxOS upgrade will fix the issue per:
    This one:CSCtl67036  basically pryer to NX-OS 5.1(3) the nexus will discard packets that have a source of 0.0.0.0.  Which in broadcast mode is exactly what the CCP heartbeat is.  We bypassed this one.CSCsx47620 is the bug for the for static multicast MAC address feature but it requires 5.2 code on the 7k
    (NOTE:Additional RAM may be required for the 5.2 update)
    Also note that Check Point gateways do support IGMP  multicast groups, given that you have the correct license. It is a  feature of SecurePlatform Professional on the higher end gateways or as a  relatively inexpensive upgrade on the lower end boxes or open  platforms. For lab purposes you can simply type “pro enable” at the CLI  (without the quotes). As of the latest build there is no technical  limitation (no license check) so you can enable advanced routing  features as needed for testing in a lab. For step by step details on  configuring IGMP on SPLAT Pro go to the Check Point support site and  search for sk32702.
    This can be a frustrating issue to troubleshoot, so hopefully this helps someone avoid the headaches I ran in to.

  • Cannot read MAC address when Installing the Java workplace

    Hi All,
         While installing the Java Workplace for 2004s, following error happened:
    ERROR 2008-03-25 11:50:53
    CJS-30059  Java EE Engine configuration error.<br>DIAGNOSIS: Error when configuring J2EE Engine. See output of logfile umconfigurator.log: 'Mar 25, 2008 11:50:49... Info: UME configurator (com.sap.security.tools.UMConfiguratorLoad) called for action "setup"PerfTimes : loadNativeLayer: loading jperflib failed. no jperflib in java.library.pathjava.text.ParseException: cannot read MAC address from [
    Windows IP Configuration
            Host Name . . . . . . . . . . . . : IDSMYN
            Primary Dns Suffix  . . . . . . . :
            Node Type . . . . . . . . . . . . : Hybrid
            IP Routing Enabled. . . . . . . . : No
            WINS Proxy Enabled. . . . . . . . : No
    Ethernet adapter ] using ipconfig /all     at com.sap.bc.krn.perf.PerfTimes.windowsParseMacAddress(PerfTimes.java:1173)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:289)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:260)     at com.sap.tc.logging.UID.getnodeaddress(UID.java:303)     at com.sap.tc.logging.UID.<clinit>(UID.java:59)     at com.sap.tc.logging.GUId.toString(GUId.java:46)     at java.lang.String.valueOf(String.java:2131)     at java.lang.StringBuffer.append(StringBuffer.java:370)     at com.sap.tc.logging.ListFormatter.format(ListFormatter.java:215)     at com.sap.tc.logging.Log.writeInt(Log.java:864)     at com.sap.tc.logging.Log.writeInternalByAPI(Log.java:930)     at com.sap.tc.logging.LogController.writeToLogs(LogController.java:3160)     at com.sap.tc.logging.LogController.messageInternal(LogController.java:2280)     at com.sap.tc.logging.LogController.logInt(LogController.java:2477)     at com.sap.tc.logging.LogController.logInt(LogController.java:2432)     at com.sap.tc.logging.LogController.logIntByAPI(LogController.java:2231)     at com.sap.tc.logging.APILogger.instrumentIntByAPI(APILogger.java:59)     at com.sap.tc.logging.LogController.addLog(LogController.java:1320)     at com.sap.tc.logging.PropertiesConfigurator.configure(PropertiesConfigurator.java:1119)     at com.sap.engine.core.configuration.impl.Logging.<init>(Logging.java:54)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.init(ConfigurationManagerBootstrapImpl.java:176)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.<init>(ConfigurationManagerBootstrapImpl.java:60)     at com.sap.security.tools.UMConfigModel.<init>(UMConfigModel.java:79)     at com.sap.security.tools.UMConfiguratorLoad.main(UMConfiguratorLoad.java:179)     at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)     at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)     at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)     at java.lang.reflect.Method.invoke(Method.java:324)     at com.sap.engine.offline.OfflineToolStart.main(OfflineToolStart.java:81)***************************************************************                                                         **** getMacAddress() failed                                  ****                                                         **** trying to get mac address from                          **** file C:\Program Files\sapinst_instdir\NW04S\SYSTEM\DEVWP\MAXDB\MAC_ADDRESS**                                                         **************************************************************Exception : CreateProcess: cat MAC_ADDRESS error=2**************************************************************                                                         **** getMacAddress() failed                                  ****                                                         **** failed to get mac address with Runtime.getRuntime().exec( cat MAC_ADDRESS )**                                                         **************************************************************java.text.ParseException: cannot read MAC address for IDSMYN from [] using cat MAC_ADDRESS     at com.sap.bc.krn.perf.PerfTimes.voidParseMacAddress(PerfTimes.java:1326)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:571)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:260)     at com.sap.tc.logging.UID.getnodeaddress(UID.java:303)     at com.sap.tc.logging.UID.<clinit>(UID.java:59)     at com.sap.tc.logging.GUId.toString(GUId.java:46)     at java.lang.String.valueOf(String.java:2131)     at java.lang.StringBuffer.append(StringBuffer.java:370)     at com.sap.tc.logging.ListFormatter.format(ListFormatter.java:215)     at com.sap.tc.logging.Log.writeInt(Log.java:864)     at com.sap.tc.logging.Log.writeInternalByAPI(Log.java:930)     at com.sap.tc.logging.LogController.writeToLogs(LogController.java:3160)     at com.sap.tc.logging.LogController.messageInternal(LogController.java:2280)     at com.sap.tc.logging.LogController.logInt(LogController.java:2477)     at com.sap.tc.logging.LogController.logInt(LogController.java:2432)     at com.sap.tc.logging.LogController.logIntByAPI(LogController.java:2231)     at com.sap.tc.logging.APILogger.instrumentIntByAPI(APILogger.java:59)     at com.sap.tc.logging.LogController.addLog(LogController.java:1320)     at com.sap.tc.logging.PropertiesConfigurator.configure(PropertiesConfigurator.java:1119)     at com.sap.engine.core.configuration.impl.Logging.<init>(Logging.java:54)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.init(ConfigurationManagerBootstrapImpl.java:176)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.<init>(ConfigurationManagerBootstrapImpl.java:60)     at com.sap.security.tools.UMConfigModel.<init>(UMConfigModel.java:79)     at com.sap.security.tools.UMConfiguratorLoad.main(UMConfiguratorLoad.java:179)     at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)     at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)     at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)     at java.lang.reflect.Method.invoke(Method.java:324)     at com.sap.engine.offline.OfflineToolStart.main(OfflineToolStart.java:81)**************************************************************                                                         **** Suggested workaround:                                   ****                                                         **** create file C:\Program Files\sapinst_instdir\NW04S\SYSTEM\DEVWP\MAXDB\MAC_ADDRESS** with hostname and mac address in the following format:  **** IDSMYN xx:xx:xx:xx:xx:xx**                                                         ***************************************************************java.text.ParseException: cannot read MAC address from [
    Windows IP Configuration
            Host Name . . . . . . . . . . . . : IDSMYN
            Primary Dns Suffix  . . . . . . . :
            Node Type . . . . . . . . . . . . : Hybrid
            IP Routing Enabled. . . . . . . . : No
            WINS Proxy Enabled. . . . . . . . : No
    Ethernet adapter ] using ipconfig /all     at com.sap.bc.krn.perf.PerfTimes.windowsParseMacAddress(PerfTimes.java:1173)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:289)     at com.sap.bc.krn.perf.PerfTimes.getMacAddress(PerfTimes.java:260)     at com.sap.tc.logging.UID.getnodeaddress(UID.java:303)     at com.sap.tc.logging.UID.<clinit>(UID.java:59)     at com.sap.tc.logging.GUId.toString(GUId.java:46)     at java.lang.String.valueOf(String.java:2131)     at java.lang.StringBuffer.append(StringBuffer.java:370)     at com.sap.tc.logging.ListFormatter.format(ListFormatter.java:215)     at com.sap.tc.logging.Log.writeInt(Log.java:864)     at com.sap.tc.logging.Log.writeInternalByAPI(Log.java:930)     at com.sap.tc.logging.LogController.writeToLogs(LogController.java:3160)     at com.sap.tc.logging.LogController.messageInternal(LogController.java:2280)     at com.sap.tc.logging.LogController.logInt(LogController.java:2477)     at com.sap.tc.logging.LogController.logInt(LogController.java:2432)     at com.sap.tc.logging.LogController.logIntByAPI(LogController.java:2231)     at com.sap.tc.logging.APILogger.instrumentIntByAPI(APILogger.java:59)     at com.sap.tc.logging.LogController.addLog(LogController.java:1320)     at com.sap.tc.logging.PropertiesConfigurator.configure(PropertiesConfigurator.java:1119)     at com.sap.engine.core.configuration.impl.Logging.<init>(Logging.java:54)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.init(ConfigurationManagerBootstrapImpl.java:176)     at com.sap.engine.core.configuration.bootstrap.ConfigurationManagerBootstrapImpl.<init>(ConfigurationManagerBootstrapImpl.java:60)     at com.sap.security.tools.UMConfigModel.<init>(UMConfigModel.java:79)     at com.sap.security.tools.UMConfiguratorLoad.main(UMConfiguratorLoad.java:179)     at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)     at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)     at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)     at java.lang.reflect.Method.invoke(Method.java:324)     at com.sap.engine.offline.OfflineToolStart.main(OfflineToolStart.java:81)Mar 25, 2008 11:50:53... Info: Using SID "J11" for secure storageMar 25, 2008 11:50:53... Info: Created group entry in secure storage: Group "Administrators", roles "Administrator"Mar 25, 2008 11:50:53... Info: Created group entry in secure storage: Group "Guests", roles ""Mar 25, 2008 11:50:53... Info: Created user entry in secure storage: User "Administrator", password set, parent groups "Administrators", locked "false", roles ""Mar 25, 2008 11:50:53... Info: Created user entry in secure storage: User "Guest", password not set, parent groups "Guests", locked "true", roles ""Mar 25, 2008 11:50:53... Info: Inserted administrator user data into secure storage: "Administrator"Mar 25, 2008 11:50:53... Info: Setting UME property "ume.login.guest_user.uniqueids" to "Guest"Mar 25, 2008 11:50:53... Info: Setting UME property "ume.persistence.data_source_configuration" to "dataSourceConfiguration_database_only.xml"Mar 25, 2008 11:50:53... Warning: UME property "ume.authenticationFactory" shall be set, but does not existMar 25, 2008 11:50:53... Info: Setting UME property "ume.logonAuthenticationFactory" to "com.sap.security.core.logon.imp.SAPJ2EEAuthenticator"Mar 25, 2008 11:50:53... Info: Setting UME property "ume.login.context" to "ticket"Mar 25, 2008 11:50:53... Info: Setting UME property "ume.login.context.default" to "ticket"Mar 25, 2008 11:50:53... Info: Setting UME property "login.ticket_keyalias" to "SAPLogonTicketKeypair"Mar 25, 2008 11:50:53... Info: Setting UME property "login.ticket_keystore" to "TicketKeystore"Mar 25, 2008 11:50:53... Info: Setting UME property "login.ticket_lifetime" to "8"Mar 25, 2008 11:50:53... Info: Setting UME property "ume.superadmin.activated" to "FALSE"Mar 25, 2008 11:50:53... Info: Set role references for jndi_all_operations in path "security/configurations/service.naming/security/roles/UME User Store/jndi_all_operations"Mar 25, 2008 11:50:53... Info: Set role references for jndi_get_initial_context in path "security/configurations/service.naming/security/roles/UME User Store/jndi_get_initial_context"Mar 25, 2008 11:50:53... Info: Set role references for telnet in path "security/configurations/service.telnet/security/roles/UME User Store/telnet_login"Mar 25, 2008 11:50:53... Info: Added group "Administrators" to path "security/roles/UME User Store/administrators/groups"Mar 25, 2008 11:50:53... Info: Added group "Guests" to path "security/roles/UME User Store/guests/groups"Mar 25, 2008 11:50:53... Info: Added group "Everyone" to path "security/roles/UME User Store/all/groups"Mar 25, 2008 11:50:53... Info: Changing JMS username in path "jms_provider/DEFAULT/default/conn_factories/XATopicConnectionFactory" to "Administrator"Mar 25, 2008 11:50:53... Info: Changing JMS username in path "jms_provider/DEFAULT/default/conn_factories/QueueConnectionFactory" to "Administrator"Mar 25, 2008 11:50:53... Info: Changing JMS username in path "jms_provider/DEFAULT/default/conn_factories/TopicConnectionFactory" to "Administrator"Mar 25, 2008 11:50:53... Info: Changing JMS username in path "jms_provider/DEFAULT/default/conn_factories/XAQueueConnectionFactory" to "Administrator"Mar 25, 2008 11:50:53... Info: Operation executed successfullyMar 25, 2008 11:50:53... Info: Committed changes to configuration managerMar 25, 2008 11:50:53... Info: Leaving with return code 0'.
    Anyone knows how to solve it?
    Thanks in advance.
    YiNing

    Posting this in the Netweaver Administrator section may yield better results.

  • WRT54GL MAC ADDRESS FILTER

    Hi I have a wireless access point WRT54GL and i configure it with mac address filter but it allow me to put only 40 mac and i need more? Is there any way to add more? Thanx

    Install 3rd party firmware like dd-wrt or hyperwrt+thibor. That should give you more. However, remember a bad flash may brick the router and is not covered by warranty.
    Also remember, that the wireless mac address filter does not provide you with any reasonable security. MAC addresses are quickly captured and quickly cloned. It only takes a few minutes to gather some mac addresses which are allowed into your wireless network and that's it.
    Set up wireless security with WPA2 or WPA and a strong passphrase. That's all you can do to really protect your wireless.
    If you want more detailed access control, consider installing a RADIUS server and using user/password authentication based on WPA2 or WPA (using the RADIUS or Enterprise variants).
    But the wireless mac address filter is widely overrated as security mean and only requires a lot of work and time to maintain the lists.

  • WPA with local MAC address authentication

    Can Cisco Aironet AP support WPA encryptions with local MAC address authentications as the current setup i have do not have a radius server to authenticate my users.
    i tried configuring with local MAC address but no success.

    Try this:
    conf t
    access-list 700 deny xxxx.xxxx.xxxx 0000.0000.0000
    access-list 700 deny xxxx.xxxx.xxxx 0000.0000.0000
    access-list 700 permit 0000.0000.0000 ffff.ffff.ffff
    dot11 association mac-list 700
    Replace the xxxx.xxxx.xxxx with each host you want to allow on the AP. This will block any other MACs from accessing the AP. This is not by SSID, this is by AP, so let me know if this will work for you.

  • Can we do MAC Address based routing in ASA5540

    I have a network setup where two servers from inside need to communicate with a remote network via 2 VPN gateways. The destinations are same.
    However, the chalange is each server need to follow it's own VPN gateway. Since i can't configure PBR (policy based routing) in ASA, can i configure something like MAC Address based routing. I can't use destination based routing since the remote network are reachable from the both VPN Gateways.
    Advise needed.
    Thanks in advance.
    Regards,
    R.Siva
    Network Security Engineer.

    Hi
    I am not shure i follow you correct here.
    You want 2 servers to speak to the same network but over two different vpn units ?
    If this is so then this could work
    Just set the route to the other network on server 1 to the vpn gate 1
    and route the other network from server 2 to the vpngate 2.
    in windows the command is route add.
    good luck
    hth

  • Cisco ip to mac address of a device?

    What command can I run in CLI, to get a mac address that is associated with a provided ip address?
    Context: In order to access wifi, users have to go through a web authentication. Upon submiting their credentials, we are able to see their ip address. We want to query router api with cli or something, to find a mac address based on the ip.
    Any pointers?

    It is usually not possible for a person to get the MAC address of a computer from its IP address alone. These two addresses originate from different sources. Simply stated, a computer's own hardware configuration determines its MAC address while the configuration of the network it is connected to determines its IP address.
    However, computers connected to the same TCP/IP local network can determine each other's MAC addresses. The technology called ARP - Address Resolution Protocol included with TCP/IP makes it possible. Using ARP, each computer maintains a list of both IP and MAC addresses for each device it has recently communicated with.
    Most computers allow you to see the list of IP and MAC addresses that ARP has collected there. In Windows, Linux and other operating systems, the command line utility "arp" shows this information. Using "arp," you can in fact determine the MAC address of some computers from their IP address. ARP works only within the small group of computers on a local area network (LAN), though, not across the Internet. ARP is intended for use by system administrators and is not generally useful as a way to track down computers and people on the Internet.

  • "Your Machine MAC Address is Invalid"?

    Hi,
    I need to use a software that is based on Adobe Air but got trouble with my MAC address. So, every time I try to login to the software, it's always failed and "your machine MAC address is invalid".
    There's a question that kept popping up after the installation and it hasn't appeared anymore after I click "Always Allow". Any idea what should I do to get this fixed? Because all other MAC users can use this software well.
    Thanks!

    - The MAC address you wrote is of the right format. Since it is unique to each device I can't tell if it is the one for your iPod. Are you sure that the password you entered is correct? Unless you turned it off, the first letter you entered is automatically capitalized. Carefully check each letter as you enter it. Also, some users have turned of Auto-Fill in Settings>Safari to get the password to work.
    - Have you powered off and then back on your router
    - Have you reset network settings:
    Settings>General>Reset Network Settings
    - Reset your iPod
    Press and hold the On/Off Sleep/Wake button and the Home
    button at the same time for at least ten seconds, until the Apple logo appears.
    - The troubleshooting here:
    http://support.apple.com/kb/TS1398
    Entering the iPod's MAC address only helps if the router is set up to filter connections via the Mac address.

  • Client Identifier and MAC addresses

    Hello Everyone,
    I am migrating my DHCP services from an old SUN server to an OES Linux server. In the old SUN files, my client identifier and mac addresses have a leading pair. So if my mac address is 00:30:C1:57:44:09, it is entered in the SUN files like this: 01:00:30:C1:57:44:09. My question is, do I need to enter that extra pair in my host records for OES Linux DHCP? If I do or don't, does it matter?
    The reason I'm asking is that many of my older printers and even some of the newer ones are not picking up an address from the new DHCP server when the old one expires.
    Thanks,
    Toney.

    On 21/06/2010 19:46, toneyc wrote:
    > I am migrating my DHCP services from an old SUN server to an OES Linux
    > server. In the old SUN files, my client identifier and mac addresses
    > have a leading pair. So if my mac address is 00:30:C1:57:44:09, it is
    > entered in the SUN files like this: 01:00:30:C1:57:44:09. My question
    > is, do I need to enter that extra pair in my host records for OES Linux
    > DHCP? If I do or don't, does it matter?
    Whilst I've seen this with NetWare-based DHCP the DHCP on OES Linux uses
    different objects and is provided by ISC DHCP which does not have this -
    my DHCP hosts are configured just with MAC address.
    If you examine a dhcpHost object in ConsoleOne - clicking the Other tab
    should show the dhcpHWAddress attribute has the value "ethernet
    01:23:45:67:89:ab" (where 01:23:45:67:89:ab is MAC address).
    > The reason I'm asking is that many of my older printers and even some
    > of the newer ones are not picking up an address from the new DHCP server
    > when the old one expires.
    Just printers or other types of devices too?
    If printers, particularly HP ones, check that they're set to pick up IP
    details via DHCP and not BOOTP. Yes should still work but we've seen
    problems here.
    HTH.
    Simon
    Novell Knowledge Partner (NKP)
    Do you work with Novell technologies at a university, college or school?
    If so, your campus could benefit from joining the Novell Technology
    Transfer Partners (TTP) group. See www.novell.com/ttp for more details.

  • MAC Address List

    Just a quick question reaally,
    What is the maximum number of Mac addresses the 1130AG can hold?
    Thanks for any help.

    Hi John,
    Are you referring to Mac Filters? If so;
    Configuring and Enabling MAC Address Filters
    MAC address filters allow or disallow the forwarding of unicast and multicast packets either sent from or addressed to specific MAC addresses. You can create a filter that passes traffic to all MAC addresses except those you specify, or you can create a filter that blocks traffic to all MAC addresses except those you specify. You can apply the filters you create to either or both the Ethernet and radio ports and to either or both incoming and outgoing packets.
    Note: Using the CLI, you can configure up to 2,048 MAC addresses for filtering. Using the web-browser interface, however, you can configure only up to 43 MAC addresses for filtering.
    From this doc;
    http://www.cisco.com/en/US/docs/wireless/access_point/12.3_2_JA/configuration/guide/s32filt.html#wp1034897
    Hope this helps!
    Rob

  • Can't get past configuration utility to find MAC address

    How do I locate my iPod Touch's MAC address prior to completing the configuration utility so that I can add the address to a router's MAC filtering list?  It doesn't appear that I can do anything with the iPod unless I first  go through the config process...but if I don't have the MAC address, I can't connect to my WiFi.
    Any suggestions would be appreciated.
    Thanks

    lllaass wrote:
    With iOS 5, you can setup the iPod via wifi without connecting the iPod to a computer. However, you have connect to wifi to do that. The poster is trying to set it via wifi but can't since he does not know the MAC address to add to his router so the iPod can connect to wifi. That is why I told him to set up via USB and iTunes.
    cliftonfromrichmond wrote:
    Well, you don't need to add the iPod's MAC address to the router filter table until AFTER you set up the iPod.
    Think about it:  To set up a new iPod you use the USB/Docking cable to connect the device to a computer that is running iTunes so you can use iTunes to set the device up.  During the setup process you are using the computer's network connection to transfer data to and from Apple.
    After the device is set up you can retireve the MAC address.
    FYI:  My home network is set up with MAC filtering....
    OK, fine.  And what are the chances his new iPod is not running iOS5? (HINT:  He didn't add an iOS tag to his post...)  And if I read his post correctly this is a NEW iPod because he has to run through the configuration utility. 
    I'd say that based on a recent thread about a replacement iPod not running iOS5, I'd say the odds are pretty darned good that the OP's iPod is not running iOS5.  With that being said, he cannot setup his iPod over a wireless connection which negates the necessity to retrieve said MAC address.  He must connect his iPod to a computer.

Maybe you are looking for

  • How to access the children of a particular column of af:table

    Hi I need to access and change the inputtext value, which is child of af:column of af:table(table rows dynamically change) , through javascript I tryed as fallows, but failed, can any one tell the answer <f:facet name="metaContainer"> <af:group> <![C

  • Want to call and run a vi that is not in memory

    I have a vi  (say Sub1.vi) that I want to call and run from another vi (Say Main.vi). Sub1.vi is not loaded into memory, when Main.vi is started. From within Main.vi I want to load Sub1.vi and run it. But I don want Main.vi to wait for completion of

  • Lost my gnome panel in solaris 10, x86 need help !

    Lost my gnome panel on solaris 10 x86 box and can't understand why. Can anyone help me out to restore my panel ? Thanks Richie

  • IDOC inbound conversion Rules

    Hi to all, I'm Implementing an Inbound Interface for Cost Centers using idoc message COSMAS and IDOC type COSMAS01. I want to modify IDOC data changing the cost center code by another one stored locally in a param table (Z*).  I think the best way to

  • Best practice for Admin viewing contents of network homes

    How are you viewing the contents of your users' network home directories in the gui? Is there a better way than logging in locally as root? I'd like to do this over AFP if possible. Can I make an HomeAdmins group and propogate that group to have read