Lock LAN IPs To Certain MAC Address?
Oct 13, 2011how to lock the MAC address in a system?
View 1 Replieshow to lock the MAC address in a system?
View 1 RepliesHow to lock MAC address in a System?
View 1 Replies View RelatedI work as an administrator for a small business (~30pc and a Windows 2003 R2 server ).Recently, we started to have problem with our lan, the network start to kinda lock-up randomly. For example, browsing folders is fine then you switch to one and the explorer window just do nothing (with a loading cursor) and after 4 second everything refresh and work again, then in word or any other program (sometime not even related to network files/folder) you press the save button and it do the same, do nothing for 4-5 seconds then refresh and work again.I'm positive that no process on the server take up enough CPU time to do that, it's not a per-pc problem since everybody is affected when the problem start and when I reboot the server it work like a charm for another day then the problem may restart the next day.Nothing show up in the event viewer of both PCs and the server and we can't find a correlation between the problem and high CPU/LAN usage on the server (at worse CPU is used at 10% and LAN at 2%).Our RAID controller and our SAS HDs are working flawlessly, we're in the process to change our infrastructure anyway but since I can refer to people that may know their stuff way more than myself I though Id ask here.We first though that our switches may be in cause but then why rebooting the server would be correcting the problem ?
View 7 Replies View RelatedHow do I lock my internet acces so other cannot connect to internet
View 1 Replies View Relatedhow to find security lock?
View 1 Replies View RelatedI've been trying to set up network filtering, and am having no luck. I'm trying to block certain folders on a NAS (DNS-320). My 8 yo insists that watching The Walking Dead is appropriate. So, I need to block specific subfolders so he can't access them. I would like to keep the NAS available, because there are some ebooks there that he copies to his tablet (Blackberry Playbook) to read. I DON'T want to password protect the DNS-320, because I stream the videos, mainly using XBMC / OpenElec with SAMBA shares. (If not, I can block the table from the whole NAS.) I prefer to block by MAC so there are no IP switches that happen. I also would like to block certain website (youtube) at specific times. Is that possible? Or I can turn off internet for the specified MACs.I wanted to use FREEDNS for the internet filtering, but my providers DSL modem won't keep the changes to DNS server, so that's out.
View 2 Replies View RelatedOne of our accounting administrators will be working in our server this weekend from his home remotely. He wanted to know if there was a way I could temporarily lock users from remoting in a few days to prevent them from messing up his work.The only way I could think of was disabling the accounts in Active Directory and then re-enabling them once he was done. Server is running Windows Server 2003 with the users remoting in via RDP. They all have accounts in Active Directory.
View 1 Replies View Relatedhow many unsucessful attempts a user has to access the LMS application prior to the account being locked? Is this configurable?
View 3 Replies View RelatedRegion : Germany
Model : TL-MR3020
Hardware Version : V1
Firmware Version : 3.14.2 Build 120817 Rel.55520n
ISP : T-Mobile
is it at all possible to lock a 2G/3G-Stick to 2G or 3G with the TL-MR3020 (e.g. if the desired network (2G or 3G) strength is low)? If not, this would be a useful feature for upcoming firmware versions
I just hooked up my wireless internet yesterday and I wanted to lock it so no one can use it like the neighbors and when I click on it just now, it asks for the network security key and cant find or even remember and dont know what this is?
View 1 Replies View RelatedI own a cyber cafe. I was told that switches are smart enough to distribute the same speed to all the clients. So I was not worried at first. But now if 2-3 customers starts watching youtube videos the rest starts complaining about the speed. I googled for the solution but got none. How to limit the speed,I want to lock the bandwidth of each computer.
View 8 Replies View RelatedI'd like to use load balancing with the RV042, but I have some devices that don't react well to not always using the same outgoing port (like a credit card machine, for instance). Is it possible for me to create some "rule" with the RV042 that an internal IP address will use a certain WAN port? And if so, when that WAN port goes down will the RV042 fail-over to the other active WAN port? I was able to do this with a Xincom XC-OPG502 (which is being replaced with the RV042).
View 1 Replies View RelatedI have a Cisco ASA (8.2) with several group-policies setup. By default, I can hit the SSL page, and have a selection of available group-policies for a user to login to. I want to have different ACLs for each group, to go along with the subnet that each particular group hands out. Right now, as long as a user is authenticated through AAA, they can log in to any group they select, and therefore, have more permissions than another group.
I know how to hide the list, but I need to be able to assign a specific group to a user based on an attribute in ACS.
I've setup ACS to use the "CVPN3000/ASA/PIX7.x-Tunnel-Group-Lock" Atttribute, to which I match the group-policy name in the ASA, to the attribute on the user account in ACS.This doesn't seem to work, and it just throws the user into DfltGrpPlcy, which doesn't give the user anything. So it's either wide-open, or it's broken.
I'm using RADIUS authentication and not TACACS, so it should retrieve the attributes, and according to the ACS, it grabs the attribute during the authentication process.
In the last couple weeks my router has begun to lock up / freeze. Not sure the appropriate terminology to use for this. The end result is wireless and wired connections stop functioning. I can't connect to the routers web interface via wired. I can't connect to any of the wireless SIDs. The router just doesn't respond. When I look at the router the lights are still blinking, but nobody seems to be home. I have to unplug the router and do a 30 count and plug it back in to get it to return to working order.At the time that this first occurred I mad not made any changes to the device in months, if not longer. Was running great. Not sure what happened.
View 7 Replies View RelatedI've been using the trial version of a product called Folder Lock on another computer than the one I'm using right now to type this message. I got a little too enthusiastic about locking away folders into Folder Lock on that other computer, and I think I locked away Folder Lock itself.In the past (before this problem developed), when I clicked a Folder Lock icon, it used to prompt me for the Folder Lock password, which I would then input, and then Folder Lock would open, and I could lock and unlock folders. But the problem is that now I don't get prompted for the Folder Lock password. I get a message (from Folder Lock) that says, roughly, "you may not have permissions to carry out that action." So even though I have the Folder Lock password, I can't open Folder Lock, because it won't prompt me for the password, and just says I don't have permissions.I also locked into Folder Lock my downloads folder on that computer, and apparently folders or icons that used to allow me to access the internet on that computer. I can no longer access internet from that computer.I'm wondering how I can get Folder Lock to prompt me for the password, so I can open Folder Lock. I would like to unlock all the folders I locked -- including if I locked Folder Lock itself! I locked away a lot of my important stuff. I wonder if I should do a system restore to a date before I installed Folder Lock, but I wonder if the system restore might fail to delete Folder Lock, because Folder Lock might prevent its own deletion. I have Folder Lock 7. I have Windows 7.
View 3 Replies View RelatedI'm trying to setup ACS 5.2 with an ASA v8.3.2 to lock users into VPN groups based on a users AD group. I've tried various combinations but the group lock isn't working. I've done steps 1 & 2 ...
1) Network Devices and AAA Clients -> Define VPN
2) Users and Identity Stores -> Setup AD and Directory Groups, test connection
Policy Elements:
Q1) Policy Elements - Do I need an authorization profile for each group:
Q2) What RADIUS attributes should I use to match my ASA tunnel-groups?
RADIUS-IETF attribute 25?RADIUS-Cisco VPN 3000/ASA/PIX 7.x 85 (Tunnel-Group-Lock)?Other?
Access Policies:
Q1) Do I need to enable and use group mapping?
Q2) Do I need a Network Access Authorization Policy for each group?
Region : Mexico
Model : TL-WR841ND
Hardware Version : V8
Firmware Version :
ISP : Telmex fiber
I use this router to replace the FO rooter that my ISP provides with the service as it's too limited (no NAT name translation, closes NAT, no uPnP etc...)
So the WR841ND acts as my main router, DHCP server, WiFi AP for all my network. My problem is that once in a while ( every 1 or 2 days) the wireless loses functionality, I still can see it from my devices, but can't connect, even fixing the IP (apparently not a DHCP issue then). The only way to fix this is to shut down the router 10 sec and restart it.
This brings another issue, I have another router (WR741) in WDS dispatching the signal to another part of the house to wired devices (Xbox , wd tv live hub) and it loses the WDS link, again the only way for this router to recover it is to restart it which is annoying.
I have had my WRT610N for several years and I noticed the other day that my network was not locked. I went to task/change wireless connection and clicked on it. The next screen gives me two options: " Wireless Security" or "Network Lock" and under network lock it states "Network Lock: Not enabled". I then click on the enable network lock button and I get the following message "network lock could not be enable." No matter howmany times I do this I get the same message. So, why is Network Majic not letting me lock my network? It has always worked before and just recently did this. I have done a factory reset on my router to see if this could be the problem, but i still get the same message.
View 1 Replies View RelatedI'm on an ASA 5510 running 8.2(5)41. I have clientless WebVPN configured to authenticate against an RSA RADIUS server, which has users assigned to RADIUS Class attribute 25 to match the group-lock values assigned to each ASA group-policy. This of course is to ensure users can only access the login page's drop-down VPN profiles they are assigned to by the RADIUS server. I have two other ASA 5510s (same code level) using the same RADIUS server with group-lock enabled but for IPSec remote access VPN's, and the group-lock feature works fine.
WebVPN, however, is authenticating any user to any VPN profile without regard to the RADIUS Class attribute 25 they are assigned. If I configure the VPN profiles to authenticate locally and assign group-lock to individual ASA user accounts, group-lock works. As soon as I point it back to the RADIUS server, group-lock does nothing. From the 'debug aaa' below for user 'corpvpnstp', you can see the RADIUS server sends back the attribute 25 values of "ou=stp.Client;" and "ou=stp.ClientDRC;" for this user. The ASA profile this user has attempted to connect to is "EMS-Admin", which should get denied by the ASA. Instead, the ASA successfully authenticates the user.
we are starting to replace low budget hubs by the SG-300's. On the accessports we use BPDUguard and mac security (max 1 user per port).
The newest firmware is used (1.1.2.0).
When i lock a port intentionally by connecting e.g. ports 4 and 5 together (something that happens quite frequently by user-faillure) i do not see this in the WEB gui.
The CLI does tell me that the port is locked:
gi4 1G-Copper -- -- -- -- Down* -- --
*: The interface was suspended by the system.
In the webGUI i can reset the port, but in the CLI i don't get how i should do this. I tried a 'shutdown' followed by a ' no shutdown' on CLI interface level, but that does not lift the suspension state.
Questions:
- Possible to lift the suspension state using the CLI ?
- Is there a way to see the lockdown in the webGUI ?
I'm using two WRV210 Linksys Cisco Routers to create a tunnel between two places with a pppoe adsl internet connection.I made several tests with new 2.xxx and old 1.7xx firmware, and nothing changes.Try to reset to factory defaults, and nothing changes.I have two problems:
1) The router crashes after a time working, usualy around 24 hours, sometimes more, sometimes less. The lights still flashing, but nothing happens, no VPN traffic and no ping response from the router, and of course, no internet access. I could see just that the router works a bit hot, but, I think that is normal.
2) The VPN IPSEC was configured, and both configurations are identical. All value are the same, I am using the dyndns service. So, the VPN quickly connects and I can ping and access remote computers. Windows Folders, VNC, IT'S REALLY WORKS FULL. WORKS REALLY FINE. PERFECT.
BUT, when the router crashes, as I've told on problem 01, after remove the power cord and insert ir again, the VPN don't reconnect.On log's, I could see that it's say that has no preshared key. [code] But, it worked before. Nothing changes, nothing, the router just restarts. No configuration was lost, (I checked the VPN IPSEC TAB), but says that have no preshared key,The unique way to restablish the connection is go on the VPN IPSEC TAB, and change symetrical any configuration, as change MAIN MODE to AGGRESSIVE on both routers.So, now are as MAIN. Tomorow probably it will crash, so, I will have to restart both routers, and change to AGGRESSIVE. So, when it happens again, i will have to back to MAIN.
I have a brand new 2911-TS running 2900-universalk9-mz.SPA.151-4.M1. I have connected the async lines to several devices including ASA5510's, 7206V XR and 6506es. I'm experiencing issues where I go to connect to the console port of one of my devices and my access is denied as if the port was already in a session. I clear the line and try again, same response. If I swap that line with a known functioning line I see lines and lines of output as if the device I was trying to connect to was constantly sending data to the console port. I've not had this problem on any of my older Cisco terminal servers. I opened a TAC case and they had me RMA the HWIC module. I cannot find any information about setting some sort of buffer limit or session timeout. I feel this is a configuration, or mis-configuration issue.
View 8 Replies View Relatedwe have some devices on the network which cannot be secured and we need to isolate from the rest of the subnet.Our switches are Cisco 2960.Is it possible to via an ACL local a specifric port down to only allow traffic from specific MAC addresses? I've had a go at this myself but not been able to make any progress. The traffic type is TCP/IP.
View 10 Replies View RelatedI have a wireless card that causes my Inspiron 5100 to lock up about once a day. I have tried 3 different types of cards (Netgear, Microsoft, Dell) all with the same result. I have a laptop cooler because I thought that the heat might be causing the problem - not the case. If I leave the wireless card out the lockup does not happen.
On a side note...I have tried to update the BIOS on my computer. When I download what seems to be the appropriate file, it tells me that I don't have the appropriate file.
I have setup ACS 5.2 in my lab and have it completely funcation with Downloadable ACLs, Dynamic VLANs and the identity store on the backend is Active Directory. I need it to lock a user account in AD if there are to many auth attempts. I have gone into AD and set a max login attempts to 3 but if I continue to fail authentication (on purpose) using radius auth, it never locks out my AD account? I am using the Anyconnect 3.0 with NAM as the supplicant installed on my workstation. I have also configured the switchport that I am connect to with the following commands. I tried the dot1x max-reauth-req 3 command and that didn't really do anything for me either. What am I missing here?
switchport mode access ip access-group 10 in authentication event fail action authorize vlan 40 authentication event no-response action authorize vlan 40 authentication host-mode multi-host authentication priority dot1x mab authentication port-control auto authentication timer reauthenticate 10 authentication timer inactivity 20 authentication violation protect mab dot1x pae authenticator dot1x timeout quiet-period 5 dot1x timeout tx-period 5 dot1x max-req 3 spanning-tree portfast
My network keeps losing the lock icon that displays with the network name. I think this is happening with power shortages or outages. I have checked the settings online and it says WPA Preshared Key. Is the network still secure? I have a WRT54G wireless router.
View 1 Replies View RelatedWhenever I tried to do backup of CiscoWorks from GUI, I am receiving a error message"Backup failed. ERROR(292): C:PROGRA~1CSCOpx/backup.LOCK file exists, look into the log file C:/PROGRA~1/XCSCOpx/log/dbbackup.log for more details". backup.LOCK file size is 0KB.I am using LMS 3.2; RME 4.3.0;CM 5.2.0
View 1 Replies View RelatedI am having a lab switch. Recently I am getting "%SCHED-3-SEMLOCKED: SNMP ENGINE attempted to lock a semaphore, already locked by itself" message and the switch has started to hang a little bit. I just want to know what this log means and how to trouble shoot.
I'm using C3750, version 12.2(25)SEE3
I have a couple Dell R710 2U servers that came with the Dell quick rails. The rack I am trying to place them in is a 4-post open cabinet, but the depth of the posts are about an inch too short to allow the Dell quick rails to snap-lock to the square holes. Are there any 2U extenders I can attach to the back two posts of the cabinet to give the minimum length needed for the Dell quick rails to snap-lock? The extenders would also need to have the square holes.
View 3 Replies View RelatedRegion : Hongkong
Model : TL-WDR4300
Hardware Version : V1
During long, heavy download streams (such as BT, video streaming) the router WDR4300 would still lock up the internet (WAN) connection for that client. I could still go to the admin web page on that client but no internet activity would occur until either rebooting the router.
My dad has a Windows 7 laptop. He installed Network Magic at my house on his laptop. Now my work laptop and my Kindle cannot get on the internet on my home network.Could the Network Magic lock down my home network?
View 1 Replies View RelatedI switched from Time Capsule with AirPort to E2000 and have a problem with configuration.I use the same IPs as in AirPort and E2000 gives me an error:"The WAN IP address cannot be the same subnet as the Guest Network IP address" and I can't save configuration.But in my opinion they are different.I use "Static IP" option and I have IPs from my ISP: [code] So WAN IP is different subnet as LAN and I don't know what to do now. It worked with these settings in AirPort and here I can't proceed.
View 2 Replies View RelatedI am having an issue where occasionally the Sidewinder starts to see my internal RFC 1918 address instead of the configured external address of my firewall. This is for peering between the two. The error they see on the Sidewinder is:So instead of seeing the external peer address he sees a 10.220.3.18 address. We are not sure what triggers this becuase normally he see's my 63.117.98.222 address.
View 5 Replies View Related