Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    iOS 14 introduces private addresses

    General pfSense Questions
    5
    8
    655
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • QinnQ
      Qinn
      last edited by Qinn

      What idiot came up with his (pardon my French)? That means organizations using 802.1x MAC authentication will have a major headache on their hands. Read somewhere else it changes every 24 hours ;( for now I enabled Deny unknown clients every user will squeal

      https://support.apple.com/en-us/HT211227

      Hardeware: Intel(R) Celeron(R) J4125 CPU @ 2.00GHz 102 GB mSATA SSD (ZFS)
      Firmware: Latest-stable-pfSense CE (amd64)
      Packages: pfBlockerNG devel-beta (beta tester) - Avahi - Notes - Ntopng - PIMD/udpbroadcastrelay - Service Watchdog - System Patches

      V JKnottJ 2 Replies Last reply Reply Quote 1
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Yup, fun. 😉

        Android does it too.

        My understanding here is that they will use the same MAC on known wifi connections but will initially randomly generate it. That way when searching for available networks the client cannot be tracked by MAC.

        Discussed here: https://forum.netgate.com/topic/156928/private-mac-addresses-in-ios14
        Probably better to continue that thread.

        Steve

        QinnQ 1 Reply Last reply Reply Quote 1
        • V
          viragomann @Qinn
          last edited by

          @Qinn
          You can deactivate it on SSID base. So what's the big trouble?

          ? 1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott @Qinn
            last edited by

            @Qinn said in iOS 14 introduces private addresses:

            That means organizations using 802.1x MAC authentication will have a major headache on their hands. Read somewhere else it changes every 24 hours

            I created a new connection with a random MAC on my Pixel 2 13 days ago. It still connects. Did you read about that with Android or iPhone?

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • QinnQ
              Qinn @stephenw10
              last edited by

              @stephenw10 Maybe merge this post or close it?

              Hardeware: Intel(R) Celeron(R) J4125 CPU @ 2.00GHz 102 GB mSATA SSD (ZFS)
              Firmware: Latest-stable-pfSense CE (amd64)
              Packages: pfBlockerNG devel-beta (beta tester) - Avahi - Notes - Ntopng - PIMD/udpbroadcastrelay - Service Watchdog - System Patches

              1 Reply Last reply Reply Quote 0
              • ?
                A Former User @viragomann
                last edited by A Former User

                @viragomann said in iOS 14 introduces private addresses:

                @Qinn
                You can deactivate it on SSID base. So what's the big trouble?

                A significant number of users will not open the settings app. When things don't work they will simply panic. Would be better opt-in than opt-out.

                QinnQ 1 Reply Last reply Reply Quote 1
                • QinnQ
                  Qinn @A Former User
                  last edited by Qinn

                  @jwj Exactly many people have no idea what a mac address is and switch into panic mode.
                  04f51bbc-3da8-4fb4-ac41-d01d63a006e9-image.png

                  Hardeware: Intel(R) Celeron(R) J4125 CPU @ 2.00GHz 102 GB mSATA SSD (ZFS)
                  Firmware: Latest-stable-pfSense CE (amd64)
                  Packages: pfBlockerNG devel-beta (beta tester) - Avahi - Notes - Ntopng - PIMD/udpbroadcastrelay - Service Watchdog - System Patches

                  1 Reply Last reply Reply Quote 1
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Ok, take further discussion of this here please:
                    https://forum.netgate.com/topic/156928/private-mac-addresses-in-ios14

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.