port forwarding block from mac address

i have forwarding 1 public ip to internal server for remote access.but i want to give the access in server from particular mac address any internet link and all are block. how to configure?

That’s impossible. That’s not how TCP/IP works. MAC addresses are rewritten by layer 3 hops. All you will see is the MAC address of the ISP router.

thanks,
but any suggestion for that type of network security. or re-design for help..

Implement a VPN and don’t port forward at all. If that is not feasible look at port knocking.

i want to need security…

Have you looked at VPNs and port knocking?

u mean to say 1ly allow vpn port & all r deny. if i give the user name or password our staff, he will dial any were to our vpn network server.

Yes.

but i want to dial only branches office not another internet cloud.plz suggest.

A VPN cloud is perfect for that.

Maybe consider hiring a consultant to help you out.