A MAC access control list (ACL) is a security mechanism used to add an additional layer of security to your wireless network (SSID). It adds the MAC address of wireless clients to a list used to either allow or deny access to your network.
- In Allow mode, only MAC addresses that are on the MAC ACL can connect to the network.
- In Deny mode, only MAC addresses not on the MAC ACL can connect to the network.
To apply the MAC ACL to your network, you must create an ACL, then apply it to your device.
To create or edit a MAC access control list:
- On a computer or mobile device that is connected to your wireless access point, open a web browser.
- Enter your wireless access point’s IP address in the address bar of your browser and press Enter.
- Sign in with your user name and password.
The default user name is admin. The default password is password. If you added this device to an Insight location, use the admin password for the location instead. - Select Management.
- On the left, select Configuration Security MAC ACL.
- Of the pre-existing MAC ACL group slots, click on a group to edit.
The MAC ACL Group page displays. - Enter or change your Group Name. You can use a combination of up to 32 letters, numbers and special characters.
- (Optional) To import an existing list of MAC addresses, select Replace or Merge, then click Browse File and select a .txt file.
Note: MAC addresses should be in the format 00-00-00-00-00-00 and multiple entries must be separated by a comma or a line break. To see a sample of MAC address layout for adding multiple MAC addresses, select Download Sample and open the downloaded file. - For ACL Policy, select Allow mode or Deny mode.
- (Optional) Add or remove Wi-Fi clients from the Trusted Stations list. Trusted Stations are the devices that will be allowed to go around the MAC ACL security.
- To manually add a MAC address to the Trusted Stations list, enter the MAC address in the MAC address field beneath the Trusted Stations list and clickAdd.
- To delete a MAC address from the Trusted Stations list, select the check box to the left of the MAC address entry and clickRemove.
- To move a device from the Available Stations list (devices automatically detected by the access point) to the Trusted Stations list, select the check box next to the device and click the Move button.
- To save your settings, click the Apply button.
To apply the MAC ACL:
- Select Management > Configuration > Wireless > Basic.
- Click on the SSID that you want to apply the MAC ACL to.
- Select the MAC ACL check box.
- Select Local MAC ACL to apply one of the MAC ACL groups that you configured.
Note: Radius MAC ACL requires additional configuration on a RADIUS server. - Select the MAC ACL group that you want to apply to this SSID from the Select Group dropdown menu.
- (Optional)To edit your MAC ACL group before applying it to the SSID, selectEdit [Group name].
- To apply the MAC ACL to your network, click the Apply button.