I am little bit confused on how to match IP address of a computer with its MAC address while writing ACL’s in squid. My objective is to allow IP address for which the NIC’s MAC address is already defined in ACL, so that other, who are responsible for IP collision may not use proxy. For example, i will allow a computer with IP 10.2.1.77 when its mac address is only 00:0f:fe:1c:9d:63 so on. I think the following ACL will do the job.
acl comp1_ip src 10.2.1.77
acl comp1_mac arp 00:0f:fe:1c:9d:63
http_access allow comp1_ip comp1_mac
I think the above ACL’s will work. Will post the results here after testing it.