SlideShare a Scribd company logo
5
Most read
7
Most read
10
Most read
MAC Filtering
Presented Devang Doshi on: Sep 17, 2015
Index
• MAC
• MAC Address
• MAC Filtering
MAC
• MAC stands for Media Access Control
• In the 7 layer OSI model for computer networking,
Layer Data Unit
Host
Layers
7. Application
Data6. Presentation
5. Session
4. Transport Segments
Media
Layers
3. Network Packet/Datagram
2. Data link Bit/Frame
1. Physical Bit
Media Access Control
(MAC) sub-layer
responsible for controlling
how devices in a network
gain access to data and
permission to transmit it.
Logical Link Control
(LLC) sub-layer
controls error checking
and packet
synchronization.
MAC Address
• A unique identifier assigned to
network interfaces
(for communications on the physical
network segment)
• Network address for most IEEE
802 network technologies
(including Ethernet and WiFi)
• Most often assigned by the
manufacturer
• Stored in hardware
(on card's read-only memory or some other
firmware mechanism)
Image source: https://en.wikipedia.org/wiki/MAC_address#/media/File:MAC-48_Address.svg
What is MAC Filtering?
• Definition, as per wikipedia,
“In computer networking,
MAC Filtering refers to
a security access control method whereby the
48-bit address assigned to each network card
is used to determine access to the network. “
• Definition, as per TechNet,
“MAC address filtering
is a feature for IPv4 addresses
that allows you to include or exclude computers
and devices based on their MAC address”
MAC Filtering
=
GUI Filtering
=
Layer 2 Filtering
=
Link-layer Filtering
How to implement MAC Filtering?
• When configuring MAC address filtering, you can specify the
hardware types that are exempted from filtering
(By default, all hardware types defined in RFC 1700 are exempted from filtering)
• Before configuring MAC address filtering,
• Enable and define an explicit allow and deny list
(for DHCP to function smoothly)
• Enable and define an allow list and a block list
(the block list has precedence over the allow list)
How to implement MAC Filtering?
• Four step process to enable MAC address filtering on
Windows Computer:
1. In the DHCP console, double-click the IPv4 node, and then double-
click the Filters node
2. Right-click Allow or Deny as appropriate for the type of filter you
are creating, and then click New Filter
3. Enter the MAC address to filter, and then enter a comment in the
Description field if you want to. Click Add. Repeat this step to add
other filters
4. Click Close when you have finished
Summary
Unique address
for each card,
can’t be changed*
Blacklists and
Whitelists
Devices not Users
Effective in wired
networks
Not effective on
wireless
networks
Used on
Enterprise
Networking
Reference: Websites
• https://en.wikipedia.org/wiki/MAC_filtering
• https://en.wikipedia.org/wiki/MAC_address
• https://en.wikipedia.org/wiki/OSI_models
• https://en.wikipedia.org/wiki/Media_access_control
• https://technet.microsoft.com/en-us/magazine/ff521761.aspx
Questions?
Thank you for your time

More Related Content

PPTX
How to use disk cleanup on your PC
PDF
Install active directory on windows server 2016 step by step
DOCX
2nd-Quarter-Daily-Lesson-Log.docx
PDF
SYSTEM ADMINISTRATION AND MAINTENANCE NOTES PERIYAR UNIVERSITY
PPTX
Installing Windows-10
PPTX
Introduction to Network and System Administration
PPTX
Troubleshooting
PDF
Computer Troubleshooting
How to use disk cleanup on your PC
Install active directory on windows server 2016 step by step
2nd-Quarter-Daily-Lesson-Log.docx
SYSTEM ADMINISTRATION AND MAINTENANCE NOTES PERIYAR UNIVERSITY
Installing Windows-10
Introduction to Network and System Administration
Troubleshooting
Computer Troubleshooting

What's hot (20)

PPTX
computer and society impact of Computer in society
PPSX
Windows vs mac os
PDF
Difference between system software and application software
PPT
Windows 3.0 And 3.1
PPTX
Windows 10 ppt
PPTX
Computer lab rules and regulations
PPTX
Command prompt presentation
PDF
Motherboard parts & functions
PPT
Software security
PPTX
COMPUTER NETWORKING
DOCX
1st assignment introduction to computer
PDF
MAC Address – All you Need to Know About it
PPTX
Computer hardware troubleshooting
PPTX
Common Computer Faults and Problems
PDF
Operating Systems Basics
PDF
Basic Computer Troubleshooting
PPTX
Defragmentation
PPT
System unit
PPT
Networking fundamentals
ODP
step by step to install the ubuntu
computer and society impact of Computer in society
Windows vs mac os
Difference between system software and application software
Windows 3.0 And 3.1
Windows 10 ppt
Computer lab rules and regulations
Command prompt presentation
Motherboard parts & functions
Software security
COMPUTER NETWORKING
1st assignment introduction to computer
MAC Address – All you Need to Know About it
Computer hardware troubleshooting
Common Computer Faults and Problems
Operating Systems Basics
Basic Computer Troubleshooting
Defragmentation
System unit
Networking fundamentals
step by step to install the ubuntu
Ad

Similar to Mac Filtering (20)

PPTX
Media Access Control Address or MAC address
PPSX
Lesson.7: Configuring IP Routing B
PDF
how does the OSI Model relate to the seven domains of an IT infrastr.pdf
PPTX
Systems Administration
PPT
06 - OSI Model.ppt
PPT
06 - OSI Model.ppt
PPT
Bhargava Presentation.ppt
PPT
Bhargava Presentation.ppt
PPTX
Network standards
PPT
Network Protocol and TCP/IP
PPT
open system interconnection in computer network
PDF
Module 1 slides
PPTX
КЛМ_Урок 5
PPTX
PDF
OSI &TCP/IP Model
PPTX
data_link_layer_presentation.pptx for CS students
DOC
Preparacion certificacion cisco
DOC
Preparacion certificacion cisco
PPT
Cisco CCNA module 6
PDF
Unit 2 ppt-idc
Media Access Control Address or MAC address
Lesson.7: Configuring IP Routing B
how does the OSI Model relate to the seven domains of an IT infrastr.pdf
Systems Administration
06 - OSI Model.ppt
06 - OSI Model.ppt
Bhargava Presentation.ppt
Bhargava Presentation.ppt
Network standards
Network Protocol and TCP/IP
open system interconnection in computer network
Module 1 slides
КЛМ_Урок 5
OSI &TCP/IP Model
data_link_layer_presentation.pptx for CS students
Preparacion certificacion cisco
Preparacion certificacion cisco
Cisco CCNA module 6
Unit 2 ppt-idc
Ad

More from Devang Doshi (6)

PPTX
Green Computing
PPTX
Social Perception
PPTX
Reviewing Mindfulness of Leaders
PPTX
In defense of Obama - article critique
PPTX
Capstone Final Presentation
PPTX
IPV4 vs IPV6
Green Computing
Social Perception
Reviewing Mindfulness of Leaders
In defense of Obama - article critique
Capstone Final Presentation
IPV4 vs IPV6

Recently uploaded (20)

PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PPTX
1. Introduction to Computer Programming.pptx
PDF
Approach and Philosophy of On baking technology
PDF
A comparative analysis of optical character recognition models for extracting...
PPTX
OMC Textile Division Presentation 2021.pptx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Encapsulation theory and applications.pdf
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
NewMind AI Weekly Chronicles - August'25-Week II
PDF
Mushroom cultivation and it's methods.pdf
PDF
Heart disease approach using modified random forest and particle swarm optimi...
PDF
Empathic Computing: Creating Shared Understanding
PPTX
Machine Learning_overview_presentation.pptx
PPTX
Group 1 Presentation -Planning and Decision Making .pptx
PPTX
Programs and apps: productivity, graphics, security and other tools
PPTX
TLE Review Electricity (Electricity).pptx
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
A comparative study of natural language inference in Swahili using monolingua...
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Agricultural_Statistics_at_a_Glance_2022_0.pdf
1. Introduction to Computer Programming.pptx
Approach and Philosophy of On baking technology
A comparative analysis of optical character recognition models for extracting...
OMC Textile Division Presentation 2021.pptx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Encapsulation theory and applications.pdf
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Diabetes mellitus diagnosis method based random forest with bat algorithm
NewMind AI Weekly Chronicles - August'25-Week II
Mushroom cultivation and it's methods.pdf
Heart disease approach using modified random forest and particle swarm optimi...
Empathic Computing: Creating Shared Understanding
Machine Learning_overview_presentation.pptx
Group 1 Presentation -Planning and Decision Making .pptx
Programs and apps: productivity, graphics, security and other tools
TLE Review Electricity (Electricity).pptx
Advanced methodologies resolving dimensionality complications for autism neur...
A comparative study of natural language inference in Swahili using monolingua...
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf

Mac Filtering

  • 1. MAC Filtering Presented Devang Doshi on: Sep 17, 2015
  • 2. Index • MAC • MAC Address • MAC Filtering
  • 3. MAC • MAC stands for Media Access Control • In the 7 layer OSI model for computer networking, Layer Data Unit Host Layers 7. Application Data6. Presentation 5. Session 4. Transport Segments Media Layers 3. Network Packet/Datagram 2. Data link Bit/Frame 1. Physical Bit Media Access Control (MAC) sub-layer responsible for controlling how devices in a network gain access to data and permission to transmit it. Logical Link Control (LLC) sub-layer controls error checking and packet synchronization.
  • 4. MAC Address • A unique identifier assigned to network interfaces (for communications on the physical network segment) • Network address for most IEEE 802 network technologies (including Ethernet and WiFi) • Most often assigned by the manufacturer • Stored in hardware (on card's read-only memory or some other firmware mechanism) Image source: https://en.wikipedia.org/wiki/MAC_address#/media/File:MAC-48_Address.svg
  • 5. What is MAC Filtering? • Definition, as per wikipedia, “In computer networking, MAC Filtering refers to a security access control method whereby the 48-bit address assigned to each network card is used to determine access to the network. “ • Definition, as per TechNet, “MAC address filtering is a feature for IPv4 addresses that allows you to include or exclude computers and devices based on their MAC address” MAC Filtering = GUI Filtering = Layer 2 Filtering = Link-layer Filtering
  • 6. How to implement MAC Filtering? • When configuring MAC address filtering, you can specify the hardware types that are exempted from filtering (By default, all hardware types defined in RFC 1700 are exempted from filtering) • Before configuring MAC address filtering, • Enable and define an explicit allow and deny list (for DHCP to function smoothly) • Enable and define an allow list and a block list (the block list has precedence over the allow list)
  • 7. How to implement MAC Filtering? • Four step process to enable MAC address filtering on Windows Computer: 1. In the DHCP console, double-click the IPv4 node, and then double- click the Filters node 2. Right-click Allow or Deny as appropriate for the type of filter you are creating, and then click New Filter 3. Enter the MAC address to filter, and then enter a comment in the Description field if you want to. Click Add. Repeat this step to add other filters 4. Click Close when you have finished
  • 8. Summary Unique address for each card, can’t be changed* Blacklists and Whitelists Devices not Users Effective in wired networks Not effective on wireless networks Used on Enterprise Networking
  • 9. Reference: Websites • https://en.wikipedia.org/wiki/MAC_filtering • https://en.wikipedia.org/wiki/MAC_address • https://en.wikipedia.org/wiki/OSI_models • https://en.wikipedia.org/wiki/Media_access_control • https://technet.microsoft.com/en-us/magazine/ff521761.aspx
  • 11. Thank you for your time

Editor's Notes

  • #7: Before you can configure MAC address filtering, you must do the following: Enable and define an explicit allow list. The DHCP server provides DHCP services only to clients whose MAC addresses are in the allow list. Any client that previously received IP addresses is denied address renewal if its MAC address isn’t on the allow list. Enable and define an explicit deny list. The DHCP server denies DHCP services only to clients whose MAC addresses are in the deny list. Any client that previously received IP addresses is denied address renewal if its MAC address is on the deny list. Enable and define an allow list and a block list. The block list has precedence over the allow list. This means that the DHCP server provides DHCP services only to clients whose MAC addresses are in the allow list, provided that no corresponding matches are in the deny list. If a MAC address has been denied, the address is always blocked even if the address is on the allow list.
  • #8: Before you can configure MAC address filtering, you must do the following: Enable and define an explicit allow list. The DHCP server provides DHCP services only to clients whose MAC addresses are in the allow list. Any client that previously received IP addresses is denied address renewal if its MAC address isn’t on the allow list. Enable and define an explicit deny list. The DHCP server denies DHCP services only to clients whose MAC addresses are in the deny list. Any client that previously received IP addresses is denied address renewal if its MAC address is on the deny list. Enable and define an allow list and a block list. The block list has precedence over the allow list. This means that the DHCP server provides DHCP services only to clients whose MAC addresses are in the allow list, provided that no corresponding matches are in the deny list. If a MAC address has been denied, the address is always blocked even if the address is on the allow list.
  • #9: MAC addresses are uniquely assigned to each card, so using MAC filtering on a network permits and denies network access to specific devices through the use of blacklists and whitelists. While the restriction of network access through the use of lists is straightforward, an individual person is not identified by a MAC address, rather a device only, so an authorized person will need to have a whitelist entry for each device that he or she would use to access the network. MAC filtering is not an effective control in wireless networking as attackers can eavesdrop on wireless transmissions. However MAC filtering is more effective in wired networks, since it is more difficult for attackers to identify authorized MACs. MAC filtering is also used on enterprise wireless networks with multiple access points to prevent clients from communicating with each other. The access point can be configured to only allows clients to talk to the default gateway, but not other wireless clients. It increases the efficiency of access to network