On 1/3/14 2:37 am, Ryan Coleman wrote:
I just checked google and the “best” solution from a few versions ago is to 
reserve the MAC IP to something out of range.
I’d like to find a “simple” way to do that for my customer. Is there a better 
way to block a MAC?

At the risk of thinking outside the box for a moment, isn't this something that might better be accomplished at the switch level using 802.1x MAC authentication?

Blocking a MAC in pfSense will only prevent it from routing - it won't block it from the LAN, nor will it prevent a savvy user manually configuring a static IP on the device in question.

Kind regards,

Chris
--
This email is made from 100% recycled electrons
_______________________________________________
List mailing list
List@lists.pfsense.org
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to