ACL for MAC based Wi-Fi

ACL for MAC based Wi-Fi

ACL for MAC based Wi-Fi
ACL for MAC based Wi-Fi
2025-04-30 10:50:30 - last edited 2025-05-06 07:42:45
Model: OC400  
Hardware Version: V5
Firmware Version:

I have 2000 MAC Id's and I need to allow only those to connect to a single SSID.I tried enabling MAC Filtering inside SSID -> Advance Settings , but a single MAC group takes only 500 MAC ID and also if I create few more groups the mac filerting accepts only one MAC Group.

Is there any solution for this

  0      
  0      
#1
Options
1 Accepted Solution
Re:ACL for MAC based Wi-Fi -Solution
2025-05-06 07:42:42 - last edited 2025-05-06 07:42:45

Hi  @Pruthvi_07 

 

Generally, an EAP can support around 100 concurrent client connections. May I ask about your specific use case? What types of devices are these 2000 MAC addresses associated with?  

As an alternative solution, you could create 4 MAC groups and 4 SSIDs and bind each to a separate SSID.  

 

Recommended Solution
  0  
  0  
#3
Options
2 Reply
Re:ACL for MAC based Wi-Fi
2025-04-30 23:23:54 - last edited 2025-04-30 23:25:58

  @Pruthvi_07 

 

Thats an awful lot of macs to block, I dont think you can do this in that way.  Im not even sure if there is a way with that many.

 

If they are sequential, you can possibly add them to a MAC group as a range, and use a switch ACL to at least prevent those devices from accesing other networks, even if they do connect.

Main: ER8411 x1, SG3428X x1, SG3452 x1, SG2428LP x1, SG3210 x1, SG2218P x1, SG2008P x3, ES208G x1, EAP650 x6 Remote: ER7206 v2 x1, ER605 v2 x3, SG2008P x2, EAP650 x2, ES205G x1 Controller: OC300
  0  
  0  
#2
Options
Re:ACL for MAC based Wi-Fi -Solution
2025-05-06 07:42:42 - last edited 2025-05-06 07:42:45

Hi  @Pruthvi_07 

 

Generally, an EAP can support around 100 concurrent client connections. May I ask about your specific use case? What types of devices are these 2000 MAC addresses associated with?  

As an alternative solution, you could create 4 MAC groups and 4 SSIDs and bind each to a separate SSID.  

 

Recommended Solution
  0  
  0  
#3
Options