Skip to main content
Mosep
Explorer
November 3, 2025
Question

Questions About Port Policies

  • November 3, 2025
  • 6 replies
  • 529 views

Hi,

I’ve configured port policies on my switch, but it seems that each port only authorizes one MAC address. I’ve attached two screenshots of my current policies.

Could someone explain what I might be doing wrong or what settings I need to change so that multiple devices can connect through the same port?

Thanks in advance for your help!

Zrzut ekranu 2025-11-03 105541.pngZrzut ekranu 2025-11-03 105618.png

6 replies

AEK
SuperUser
SuperUser
November 3, 2025

Hi Mosep

I didn't test it but I think wildcard should work, just like this "0c:ea:16:**:**:**".

Can you try?

AEK
Mosep
MosepAuthor
Explorer
November 3, 2025

Out of the few added, only one MAC address is authorized, and the rest get guest access

AEK
SuperUser
SuperUser
November 3, 2025

But what about the wildcard? Does it work?

AEK
ElwinBERRAR
Explorer III
November 3, 2025

That’s normal behavior when MAC-based security is enabled. The switch locks the port to one MAC address for protection. If you need several devices, enable multi-MAC or multi-auth mode if your firmware supports it, or switch to a VLAN-based policy.

For downstream equipment like another switch or AP, the policy must be relaxed to allow multiple MACs.

Mosep
MosepAuthor
Explorer
November 6, 2025

I have a FortiGate 100F connected via FortiLink to a FortiSwitch 124F, and I can’t seem to find the setting to allow multiple MAC addresses. Additionally, the option to edit ports is grayed out. This is my first time working with FortiGate — could it be that the FortiLink is not properly authorized, or is it something else?

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!