Firewall - How to block one DHCP host from talking to Internet

Started by thereaper, November 25, 2020, 01:34:33 PM

Previous topic - Next topic
I have an WiFi access point (AP) attached to OPNsense machine via ethernet.
AP gets its IP via OPNsense DHCP. AP's own DHCP server is disabled.
I want to prevent AP firmware phoning home to TP-Link.

What is the proper way to configure this in Firewall? How can I specify a DHCP lease (MAC address?) as a source in firewall rule?
OPNsense 20.7.5-amd64

Quote from: thereaper on November 25, 2020, 01:34:33 PM
I have an WiFi access point (AP) attached to OPNsense machine via ethernet.
AP gets its IP via OPNsense DHCP. AP's own DHCP server is disabled.
I want to prevent AP firmware phoning home to TP-Link.

What is the proper way to configure this in Firewall? How can I specify a DHCP lease (MAC address?) as a source in firewall rule?
OPNsense 20.7.5-amd64
Give the AP a static lease and block it then
(Unoffial Community) OPNsense Telegram Group: https://t.me/joinchat/0o9JuLUXRFpiNmJk

PM for paid support