Bulk data

Download the MAC vendor database.

Every registered OUI block, in the formats other tools already expect. No signup, no API key.

Last rebuilt Oct 6, 2026 18:00 UTC, 58,693 blocks. These files are regenerated from the live registry on a schedule and served straight from disk, not recomputed per request: expect this timestamp to move at most twice a day.
FormatWhat it's forSize
Cisco vendorMacs.xml
cisco-vendor-macs.xml
c8402fcd156df0703f4ef96ec76424f8d67e691669e1e8034eea43f8f874e8fb
24-bit OUIs only, in the exact schema Cisco ISE device profiling imports: <MacAddressVendorMappings><VendorMapping mac_prefix="..." vendor_name="..."/></MacAddressVendorMappings>. How to use this → 3.0 MiB Download
CSV
vendors.csv
d323f384bba2b85959c956eaa0de7454318f6e2b506673771ca7be538e28fba9
Every registered block (MA-L, MA-M, MA-S, IAB, CID), one row each, prefix plus mask so 28- and 36-bit blocks aren't lossily truncated to 24 bits. How to use this → 5.8 MiB Download
JSON
vendors.json
b1e0f7d0e04df053ff3e45dab973d9419d6660f37dd66a77266f00292f803fa1
The same data as the CSV, as a single JSON array of objects, for anything that would rather parse JSON than CSV. How to use this → 10.5 MiB Download
Wireshark manuf
manuf.txt
cbcf6f6d1277f81d3acfa8b04d363451d1bfbb1550ae893c79dfb81192d10324
Drop-in replacement for Wireshark/tshark/tcpdump's manuf file: tab-separated prefix, short name, full name, sub-24-bit blocks written as full prefix + /mask. How to use this → 3.4 MiB Download
Nmap mac-prefixes
nmap-mac-prefixes.txt
a1545ddf8b8f6e7b3f8216d05a5c870a3f9a1c17b096023e45715a62ce5c7411
Drop-in replacement for nmap's nmap-mac-prefixes file (used for its -O/-A vendor guesses): 24-bit OUIs only, "XXXXXX Vendor Name" per line. How to use this → 1.2 MiB Download

Verifying a download

Each file's SHA-256 is shown above and collected in SHA256SUMS, in the format sha256sum reads. Fetch it next to the files you pulled and check them in one step:

curl -O https://macadress.com/downloads/SHA256SUMS
sha256sum --ignore-missing -c SHA256SUMS

The checksums change whenever the files are rebuilt, so re-fetch SHA256SUMS in the same run as the files.

Step-by-step install guides

Each format above links to its own guide, or browse all of them on the Learn page: importing into Cisco ISE, updating Wireshark's manuf file, refreshing nmap's vendor guesses, and using the CSV/JSON files directly.

Need it live instead?

These are point-in-time snapshots. For a per-address lookup with the full IEEE 802c classification, randomization confidence, and EUI-64/IPv6 derivation, use the free JSON API or the web lookup instead.