Wireless MAC Filter System Wireless
FortiGate Version 4.0 MR1 Administration Guide
222 01-410-89802-20090903
http://docs.fortinet.com/ • Feedback
Alternatively, you can create a deny list. Similar to the allow list, you can configure the
wireless interface to allow all connections except those in the MAC address list.
Using MAC address filtering makes it more difficult for a hacker using random MAC
addresses or spoofing a MAC address to gain access to your network. Note you can
configure one list per WLAN interface.
To allow or deny wireless access to wireless clients based on the MAC address of the
client wireless cards, go to System > Wireless > MAC Filter.
Managing the MAC Filter list
The MAC Filter list enables you to view the MAC addresses you have added to a wireless
interface and their status; either allow or deny. It also enables you to edit and manage
MAC Filter lists.
Figure 97: Wireless MAC filter list
To edit a MAC filter list
1 Go to System > Wireless > MAC Filter.
2 Select Edit for the wireless interface.
Figure 98: Wireless interface MAC filter
3 Complete the following and select OK:
Interface The name of the wireless interface.
MAC address The list of MAC addresses in the MAC filter list for the wireless interface.
List Access Allow or deny access to the listed MAC addresses for the wireless interface.
Enable Select to enable MAC filtering for the wireless interface.
Edit icon Edit the MAC address list for an interface.