So awesome theoretical discussion.
So how about solution for my question? BTW - creating VLANs and additional SSIDs is NOT a valid one.
So how about solution for my question? BTW - creating VLANs and additional SSIDs is NOT a valid one.
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts MenuQuote from: zan on December 29, 2022, 08:30:43 AM
Out of curiousity I set up a MAC alias for my Android phone and turned on IPv6 support on my Wifi vlan and RA service with Assisted mode.
I could see my phone got a SLAAC address and the MAC alias from OPNSense's Diagnostics->Aliases also resolved to the same address.
Then I setup a block rule for that MAC alias and it seems to be working as expected.
So it looks like OPNSense can firewall by MAC address just fine, what do I miss here?
Quote from: RamSense on December 28, 2022, 06:07:08 PM
how about getting those devices a static ip(4 and/or 6) and block it on ip, or when several, making an alias with those ips and blocking it. I am using that for my kids devices to block the internet for them to support bedtime :-)
Quote from: Greelan on December 10, 2022, 06:56:41 AM
You will need an outbound NAT rule - see step 5(b)