Answer the question
In order to leave comments, you need to log in
What is the best way to ban manual IPs on Microtik?
There is a "common" vlan, it has DHCP Mikrotik.
The task is to prohibit all devices from using static manual addresses, only access via DHCP.
Even if the IP matches the pool from DHCP, it is still cut off, since it is not issued to this MAC.
Access to the network, only for the necessary mac and, accordingly, their IP to the network.
Answer the question
In order to leave comments, you need to log in
Open IP - DHCP Server, select guest dhcp and set the option "Add ARP For Leases".
Go to the Bridge section, select the guest bridge, opposite the ARP option, you must specify "reply-only".
Source .
This should be done not on Mikrotik, but on the switch! It, the switch, must be managed and support the DHCP-Snooping option. This is exactly the option you need to enable and configure!
In addition - xgu.ru/wiki/DHCP_snooping
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question