Howto refresh MAC-filter list in WCS ?

Hello
We?re using WLC4402 with WCS 4.
We are using MAC filters with WPA to limit which clients can connect.
My problem is this:
I think it is smoother to insert new MAC filters through the WLC web interface instead of using the WCS.
When I do this the new MAC filters I put in through the WLC web interface will not show up in the WCS, how can I refresh the WCS to make the new MAC filters show up there ?
/Dan

Make sure the controller is using version in Release 3.2.78.0.If not upgrade the controller so that updates are sent properly to wCS .Max number of mac filter that could be configured is 512 on WCS 2.2

Similar Messages

  • WRT54G2 V.1 - Mac Filter List gone - Security Hole ?

    Help,
    I was trying to block some unwanted users using Mac Filter but for unknown reason, after I succeed, my Mac Filter List gone empty. It happened several times. First I let it happened some times so I'm sure what really happened there.
    My config is let wireless users able to access the web server by Http. I use WPA2 Personal with TKIP-AES. I let my SSID broadcast, and I let any users who need access to the network know/use the secret key.
    I thought it shouldn't be mattered since I protect my Linksys Web Server use good password. But I was wrong. And when 'it' happened (just before MAC Address gone empty and blocked users then able to connected to my network), uknown device got connected to the network first.
    It happened several times as I said before, but the last one hit me surely that my config, Mac Filter list, anyhow, can get erased by something/someone if I keep this way. So I decided to change the config and not let the wireless users to have access to my linksys web server.
    I change from Http to Https. I disabled wireless users to having access to the web server. And to make me comfort I activate AP Isolation too. I use Access (internet) Restriction rather than Mac Filter because it is more comfortable to me as I can create policies.
    Anyone have same experience ? Expert explanation would be a great appreciate.
    Oh yes. I don't have any config change since I use my new configuration. That's what I can tell. Thanks.

    to a determined hacker, MAC address filtering is a trivial security block to overcome (as you seem to have found out). You would be better, as Gandalf said, to disable SSID broadcast, and provide the SSID and WPA passphrase to anyone that you want to allow to connect to your network.
    Tomato 1.25vpn3.4 (SgtPepperKSU MOD) on a Buffalo WHR-HP-G54
    D-Link DSM-320 (Wired)
    Wii (Wireless) - PS3 (Wired), PSP (Wireless) - XBox360 (Wired)
    SonyBDP-S360 (Wired)
    Linksys NSLU2 Firmware Unslung 6.10 Beta unslung to a 2Gb thumb, w/1 Maxtor OneTouch III 200Gb
    IOmega StorCenter ix2 1TB NAS
    Linksys WVC54G w/FW V2.12EU
    and assorted wired and wireless PCs and laptops

  • WRT54GSV4 and MAC Filter

    Hello, i'm using WRT54GSV4 with mac filter list. I've used maximum of 40 macs in filter list. Is there any posibilities to expand list? Thanks.

    sorry to step in here, frank.. but I believe you must have misunderstood him... he is not specifically saying that hes blocking wireless MAC adresses... although his wireless router can only support 32 wireless clients maximum, it's too early to say if he is trying to block it. he might have wireless acess points...
    "a helping hand in a community makes the world a universe"

  • WRT610N: Cannot enter MAC address in MAC address filter list

    My WRT610N cannot accept a very specific MAC address in any position of the MAC address filter list.  It is a valid address and it was working fine in the filter list of my WRT54G but the 610N will just not take that specific address!  What is this all about?
    Solved!
    Go to Solution.

    gv wrote:
    There is nothing like a "non-critial setup". It's enough to drive by with a car and within a few minutes your network is hacked. Or it's the bored teenager next door...
    I recommend to replace the WEP only device instead of taking the risk of a hacked network.
    And just forget about the wireless mac address filter. Anyone, who wants to crack your WEP network will collect enough accepted MAC addresses during the cracking process. It's just not worth the trouble to set up the filter and keep the list current...
    Thanks for the diligent follow-up gv but I can't replace the WEP-only device for now.  (I need to go through a conversion process for that device to accept WAP and that will take a fair amount of time)  I understand your point about getting accepted MAC addresses but, at least, it requires a bit more effort... Maybe I will return the WRT610 and stick with my old WRT54 until the 610 gets fixed...

  • I've downloaded the free pixel bender plugin for my mac (it says toolkit) for cs5 but I don't know how to put it in my filter list, can someone walk me thru it please?

    I've downloaded the free pixel bender plugin for my mac (it says toolkit) for cs5 but I don't know how to put it in my filter list, can someone walk me thru it please?

    Copy it in the respective plug-in folder.
    Mylenium

  • E4200 multiple unknown MAC's in filter list

    I have a few desktops in my home network with a new E4200 router. 
    Have to add my wifes Lenovo notebook to the net and activated MAC filtering as addition to the WPA2.
    Set her MAC address in the filter list. Only one MAC is allowed to access WLAN.
    An hour later I see in the Filter list four (4) different and unknown MAC adresses added to the list. (???)
    Do I have to worry?  I removed them and all works well.

    gv wrote:
    somms wrote:
    sabretooth wrote:
    You don't need MAC filtering as it does nothing for security.  As long as you have WPA2-AES you are good for the next 100 years.
    This does not apply to the majority of Linksys/Cisco wireless routers w/gimped firmware unable to turn WPS off.  Their WPA2-AES can be cracked in a couple hours easy...
    That is not correct. You cannot crack WPA2-AES in a couple of hours. Reaver doesn't crack the WPA2-AES keys. It cracks the WPS PIN which allows you to retrieve the WPA2-AES directly from the router. WPS is like a backdoor into the router to retrieve the passphrase. WPA2-AES is still extremely secure. If you could disable WPS the WPA2-AES network would be perfectly secured.
    WPA2-AES cannot be cracked at this time.
    The wireless MAC filter generally doesn't provide security. MAC addresses are always transferred unencrypted thus they are very easy to find. I would not bother with the wireless MAC filter.
    I think the appearing MAC addresses is a bug in the router firmware. But it's difficult to tell if you don't post the MAC addresses you have found...
    This does not apply to the majority of Linksys/Cisco wireless routers w/gimped firmware unable to turn WPS off.  Their WPA2-AES can be 'obtained' easily in a couple hours...
    Thanks for pointing this out and I have amended my previous statement above!
    Member of the Professional Aviation Safety Specialists Union!

  • MAC address gets removed from the CAM 4.8 Filter List??

    Hi,
    we got WLC and NAC integration going. I have a smartphone wi-fi client I would like to exclude from logon and posture assessment, so I add the MAC into the CAM's Filter List. It works fine for a short while and then the MAC gets deleted from the list for some reason. Here’s what CAM log show (roughly an hour between the MAC is manually added and then gets deleted):
    any ideas why it's happening and how to fix this?

    Faisal,
    I looked through the NAC log again, and I did miss another piece of info, so here's how the log looks after adding the MAC in the filter list:
    Administration      2010-11-01 17:53:31       38:E7:D8:0B:42:A3  added to MAC list
    Administration      2010-11-01 18:51:10       38:E7:D8:0B:42:A3  removed from the MAC list
    Administration      2010-11-01 18:51:10       (API removemac): Succeeded!
    So, it looks like there is some process running that removes the MAC from the list every time it's added in raughly an hour?
    Dmitri.

  • WCS MAC FILTER TABLE

    Does anyone know how to export the mac filtering table from WCS 7.0.230.0, to a csv file?
    thanks
    nev

    I have just usually run this command on the CLI of the WLC:
    show macfilter summary
    Sent from Cisco Technical Support iPhone App

  • Refreshing drop down list in a web template based on a query view

    Refreshing drop down list in a web template based on a query view  
    I have just developed my first set of portal pages displaying the results of Bex queries and query views in the SAP Netweaver portal. I developed the pages using web application designer. Each web template created with W.A.D is using a query or query view. In one template I have that is using a query view I am using a variable in my Bex query. This variable is of type customer exit, is set to variable is ready for input and calls some ABAP code which returns the current fiscal week number and year. When I run the query or query view in isolation through Bex analyzer the variables gets populated correctly. In my web template I have associated my variable from my query view to a drop down list box. However when I run the Iview created from this template the query results get refreshed but my drop down list box does not, it still shows last weeks week number. How do I get the drop down list box to refresh with the latest result from my customer exit variable?
    Regards
    Collin

    Hi  ,
    According to your description, my understanding is that you want to  filter a calendar based a look up column in SharePoint 2013.
    Calendar View not support OOTB filters connection. it is disabled for calendar view, you need to change view(not calendar view) so OOTB filters works and get connected to your view.
    You can achieve this using combination of jQuery and SharePoint OOB techniques.
    For jQuery filters refer to the  blog: enter SharePoint List Filters using jQuery
    Also you can filter Calendar View Web Part using JQuery and SPServices:
    http://blogs.visigo.com/chriscoulson/filter-a-sharepoint-calendar-list-with-a-date-picker/
    http://joshmccarty.com/2011/11/sharepoint-jquery-and-fullcalendar%E2%80%94now-with-spservices/
    http://spservices.codeplex.com/discussions/258846
    Another  way, you can have a look at the SPFilterCalendar :
    http://www.aasoftech.com/SitePages/How%20to%20Filter%20SharePoint%20Calendar%20Dynamically.aspx
    Best Regards,
    Eric
    Eric Tao
    TechNet Community Support

  • RV325 DHCP static address list and duplicates in unknown IP & MAC Binding List Table

    DHCP Manual Bindings are entered and are displayed correctly in the IP & MAC Binding Table.
    The error is that there are duplications of the IP address in the Unknown MAC Address List and hitting the Refresh button does nothing.
    These duplicates remain in the Unknown table forever. Only a reboot of the router really refreshes the Unknown table.
    Any suggestion?

    The problem has been solved.
    All the settings are apparently stored in the open directory database.  I had to enable system records and viola there was the extra entry complete with MAC address and IP address.

  • LMS 4.2.4 - Creating daily report for checking mac-adress list (IP hone) existing on the network

    Hi,
    we would like to  create a daily report for checking  (by user-tracking function) mac-address list on the network.
    I try to use “report designer” on “report” dashboard without any success. Could you help us to provide or create a method for applying a report job every day for checking our mac-address list
      Thanks in advance.

    you can do the following
    1. -create a quick report  {Reports > Inventory > User Tracking > Quick Report}
    2.export the last report which I suggested and filter the MAC address you are interested in
    3. you can create a Custom report  {Reports > Report Designer > User Tracking > Custom Reports } as per your need.
    Thanks-
    Afroz
    *** Ratings Encourages Contributors ****

  • NAC Profiler integration - cant add filter list on CAM

    Hi All,
    I have a problem regarding the Profiler - NAC integration for end point profiling.
    Here is the situation:
    I already created the integration based on the steps on the guide: Configuring Cisco NAC Appliance Integration. I think the configuration is correct because i can do database synchronization between Profiler and CAM. Here is the Profiler server log:
       NAC_SYNC: Task_Queue_Runner starting up
       NAC_SYNC: Profiler / NAC Synchronization END [add 0, upd 0, desc 0, rm 0]
       NAC_SYNC: Profiler / NAC Synchronization START
       INFO: [2010-12-15 11:01:09 (fcapGetHWAddr:49)]  Getting MAC for eth0
    I already created end point profile named "Admin" which is based on IP address. I also created NAC events based on the end point profile "Admin".
    The NAC event is profiling "Admin" to a NAC role. The purpose for this event is to bypass "Admin" from NAC authentication so that the "Admin" can connect to network automatically to one NAC role.
    However when "Admin" connect to network, it is still challanged by NAC. I dont see the "Admin" on the CAM filter list either.
    This means that the end point profiling is still failed.
    Is there anyone who have any experiences with this?
    Thank you for the supports and comments
    Imad

    Hi,
    Ok, so the Profiler will only add devices to the CAM filter list, if a device fals into a profile for which a nac event is configured.
    If there is no device on the profile -> No NAC event -> No device added to the CAM.
    Is there any device that was assigned to that profile?
    Regarding the Active Rule column, it is used to quickly  ascertain which Endpoint Profiles on a system (if any) contain an Active  Rule that will result in the Profiler system doing active collection if  one or more NetInquiry Collector component modules are enabled. Active  profiling rules and active profiling is described in detail in the "Configuration of Active Directory Data Rules" section: http://www.cisco.com/en/US/docs/security/nac/profiler/configuration_guide/311/p_endpt_part231.html#wpxref59325.
    HTH,
    Tiago

  • Where to add mac filter without template on Prime 2.0?

    Hi,
    Can someone point me to where I should go to add mac filter under security>AAA in Prime 2.0 directly to controller without using templates? Check the screenshot attached. there is no option to add filter. It only give option to edit. Going to Classic view I see the add option is available. Puzzled. Any help is appreciated.
    Cheers,
    Fadi

    I am unabl eto find any way to configure mac-address filter without template. To configure with template you can go through the following steps-
    Step 1 Choose Configure > Controller Template Launch Pad.
    Step 2 Click MAC Filtering or choose Security > MAC Filtering from the left sidebar menu. The Security > MAC Filtering page appears.
    Step 3 If you want to add a new template, choose Add Template from the Select a command drop-down list, and click Go. To modify an existing template, click the template name. The MAC Filtering template page appears.
    Step 4 If you keep Import From File enabled, you must enter a file path or click Browse to navigate to the file path. The import file must be a CSV file with MAC address, profile name, interface, and description (such as 00:11:22:33:44:55, Profile1, management, test filter). If you unselect the Import from File check box, continue to Step 5. Otherwise, skip to Step 8.
    The client MAC address appears.
    Step 5 Choose the profile name to which this MAC filter is applied or choose the any Profile option.
    Step 6 Use the drop-down list to choose from the available interface names.
    Step 7 Enter a user-defined description of this interface. Skip to Step 9.
    Step 8 If you want to override the existing template, select the Override existing templates check box.
    Step 9 Click Save.

  • Can't use MAC Filter and have Blinking Red Link Light on WRE54G

    I just added a WRE54G V3 extender to my WRT54G V8,  I have download the most recent firmware on both products.  My network in using WPA and after fixing all the typo associated with setting all that up I still could not establish wireless connectivity.  I am/was using MAC Filters on the WRT54G and had added and triple checked the WRE54Gs Mac address,, but until I disabled the Mac Filter I could not connect to the network.  I would like to get that issue resolved.  Secondly even with the MAC Filter disabled the Link Light blinks red at a regular interval.  It does appear that I have connectivity, but the light just blinks away.  If this is normal I could not find any reference is the written materal.  Thanks for any advice you might have.
    Message Edited by ecanon on 04-16-2008 01:31 PM

    Sorry to appear toltake so long to get back to this, but I did post a message in reply somewhere ????, but it doesnt appear here??? and then I got tied up on some personal stuff.
    Anyway, I followed all the advice I could find on this thread (thanks to everyone who has posted to any question on this thread) and after starting completely over reseting everything and basically configuring the RE with everything else turned off and then powering up everything starting with the router, I got everything up and running using WAP and all.
    The only issue left is when I enable MAC filtering on the router to allow only the MAC addresses in the list access to the network the RE goes belly up.  Disable Mac filtering and it comes right back up.  I have triple checked the Mac address I entered on the list.  The only reference to the RE's MAC address is on the sticker on the back.  I can't find that verified anywhere in the configuration screens on the RE.
    If I could get his working I could count my security as good as it gets and go on about my business.
    Thanks again to all for helping me get this far.

  • NAC 4.6 MAC filter port configuration issue

    We are installing NAC 4.6(1).  Just dealing right now with one profile, Dealing with device filter list.  We have a MAC address in the list that when it is seen puts the switchport in VLAN 117 (access VLAN) then when the device gets unplugged, we want it to move  back to the VLAN 115 (auth VLAN).  The first part works, but when it is unplugged, it does not go back to the auth VLAN.  We are doing all port changes via SNMP Link-change and in debug we can see the SNMP link-down being sent.  Any ideas?
    By the way, when we plug a non-certified laptop into the same port, it moves it to VLAN 115 (auth VLAN).  It just won't move it back after the certified device is unplugged.  Thanks,

    I found this in the config guide for NAC CAM 4.6.  Section under port profile configuration.
    Step 14 Remove out-of-band online user when SNMP linkdown trap is received, and then [do nothing | change to Auth VLAN | change to Restricted VLAN]
    Click this option to specify which VLAN the CAM assigns to a switch port after receiving a linkdown trap from the switch when a client disconnects from the Cisco NAC Appliance network. (See Advanced for details on linkdown traps.)
    •If this option is checked and specifies to do nothing, when the client disconnects (causing a linkdown trap to be sent), the switch port remains on the last VLAN assigned, or re-assigned to the VLAN specified in the Change to [Auth VLAN | Access VLAN] if the device is certified, but not in the out-of-band user list option.
    Note If the client is not on the Certified Devices List, the client is put on the Authentication VLAN.
    •If this option is checked and specifies to change to Auth VLAN, the CAM puts the switch port on the Authentication VLAN after receiving a linkdown SNMP trap regardless of whether or not the client is on the Certified Devices List.
    •If this option is checked and specifies to change to Restricted VLAN, the CAM either assigns the switch port to a previously-configured VLAN Name (see Configure VLAN Profiles for more details), or to a specific VLAN ID number you enter in the text field that appears under this setting. As with the change to Auth VLAN option, this VLAN assignment takes place when the CAM receives a linkdown trap regardless of whether or not the client is on the Certified Devices List.
    So it seems like it is supposed to be changing the VLAN back to whatever VLAN I specify, but that is not happening.  Guess I need to just open a TAC Case.

Maybe you are looking for

  • Can sequences be re-linked to original resources when importing another version of the same project?

    When editing a large event project, I usually set it up and sync cameras/audio into multicam sequences. My current project is of a kickboxing event so 3 of us will take say 5 fights each to edit on different machines. While importing the other guys w

  • Unable to upgrade to latest itunes (10.1.1)

    hello.. i am having a bit of trouble updating my iphone to the latest verson (4.2) when i click on update on the iphone summary page, it tells me 'a new iphone software version (4.2) is available, but requires itunes 10.1.1. would you like to downloa

  • Custom order in playlists

    First, please accept my apologies for posting this query twice - I had posted the earlier one without realising it was on the iTunes for Windoze thread. I'm not thinking too clearly just now, so please bear with my error in netiquette. Using iTunes 7

  • Download - Save As box Problem

    hi friends i used the code response.setHeader("content-disposition",                     "attachment; filename=settlementdetails.txt"); to display Save As dialogbox. Here "settlementdetails.txt" is the default file name. In some os it displays "settl

  • Exported images are being exported as hidden file types

    So when I export my images using the current up to date version of Aperture 2, the files were not visible until I clicked "show hidden files." This really ***** because then when I burn a CD it appears as the CD is blank. Has this happened to anybody