Device fingerprinting for reserved addresses

I have been searching for a way to deploy device fingerprinting for our reserved addresses but if i understand it correctly it is only possible for dhcp scopes?

What i want to accomplish is to detect possible mac-address spoofs on our production network, for our dynamic scopes which are already properly segmentet it feels rather reduntant.

Logically it should not be that difficult to raise a redflag if a reserved address fingerprint is changed since it was first seen on the network?

This functionallity is one of the reasons i pushed so hard for us to invest in Infoblox and i must admit i feel somewhat confused about the lack of this.


Hopefully i have misunderstood and there is a solution for this i havent been able to find.

