Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Private Mac addresses in IOS14

    Scheduled Pinned Locked Moved General pfSense Questions
    69 Posts 10 Posters 9.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JKnottJ
      JKnott @stephenw10
      last edited by

      @stephenw10

      Yes, when I got my Pixel 2 and synced it to my previous phone, it also received my WiFi connections. They use the hardware MAC. A connection I set up a couple of weeks ago uses the random number.

      PfSense running on Qotom mini PC
      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
      UniFi AC-Lite access point

      I haven't lost my mind. It's around here...somewhere...

      1 Reply Last reply Reply Quote 0
      • AKEGECA
        AKEGEC
        last edited by

        It is so funny to see some Netgate forum members always bring up TIN FOIL HAT every time someone asks or says about privacy & security.

        @bcruze, Mac Private address is just a layer of security. The same as T2 chip and read-only system volume in Catalina. Apple is aware that their previous devices were easy target for hacking. Not to mention the leaking on intel chip issue.

        1 Reply Last reply Reply Quote 0
        • ?
          A Former User
          last edited by

          Security and Privacy are not the same thing. Just saying...

          AKEGECA 1 Reply Last reply Reply Quote 1
          • AKEGECA
            AKEGEC @A Former User
            last edited by

            @jwj said in Private Mac addresses in IOS14:

            Security and Privacy are not the same thing. Just saying...

            Let me explain the differences between them;

            Security = Protection of a person, building, organization, or country against threats such as crime or attacks.

            Privacy = Someone's right to keep their personal matters and relationships secret.

            Everyone has the right for security and privacy.

            ? 1 Reply Last reply Reply Quote 0
            • ?
              A Former User @AKEGEC
              last edited by A Former User

              @AKEGEC

              Interested in your thoughts about things like:

              Random MAC addresses may prevent you being identified across public WIFI networks (at the mall or airport, in whole foods) but that is small comfort when your cell service provider is handing over location data in bulk, with little or no legal process, to any interested party.

              Targeted exploits are rare. The bad actors don't care about you unless you are a celebrity or other notable individual. It's much more likely, however, that you will get caught up in an exploit of some widely used service or device. It's not personal ;)

              Risk vs Benefit. It shouldn't be as hard as it is to work that analysis through. It's understandable that a lot of people spend at least some amount of time in tin foil hat territory.

              I've been intentionally vague to facilitate conversation. Of course I would prefer to not have Amazon forcing preventing me from using my cell providers network while in Whole Foods AND my cell provider to not be coughing up my location data.

              I'm certain that I do regularly suffer from cognitive distortions and well informed conversation is the best way to mitigate that.

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                @jwj said in Private Mac addresses in IOS14:

                Of course I would prefer to not have Amazon forcing me onto their network in Whole Foods

                Forcing?

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                ? 1 Reply Last reply Reply Quote 0
                • ?
                  A Former User @Derelict
                  last edited by A Former User

                  @Derelict said in Private Mac addresses in IOS14:

                  @jwj said in Private Mac addresses in IOS14:

                  Of course I would prefer to not have Amazon forcing me onto their network in Whole Foods

                  Forcing?

                  Yup. They block cell signals. I've never been able to get a cell signal inside a Whole Foods. If you want to use your prime account you have no choice but to use their wifi network. So, point taken, I could just pay full price and not access their network.

                  I'm not a RF engineer but it appears to be passive blocking (faraday cage). Step outside the building and I get a full strength signal.

                  DerelictD JKnottJ 2 Replies Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by johnpoz

                    I don't really recall noticing this last time I was in a whole foods.. Last time was before covid.. Quite often stop at their in store taverns.. Tuesday's is 2$ bottle and can day at their instore bars.. And they normally have a decent selection..

                    So stop there after work many a tuesday for couple of cold ones ;)

                    But sure it behooves stores like this to control your internet access while your in the store, can prevent you from doing price compares, etc. Or atleast make it way more difficult - since hey odd how you can't get to store xyz site while on the whole foods wifi ;)

                    Problem could also be cell coverage in the middle of a HUGE store might just be spotty? But do believe amazon a few years back had a patent on such thing as controlling people in their stores internet access..

                    But force prob not the right word, more like direct you to their connection ;) Nothing saying you can't just leave your phone at home or in the car, or just turn it off, or put in airplane mode, etc.

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                    ? 1 Reply Last reply Reply Quote 0
                    • ?
                      A Former User @johnpoz
                      last edited by

                      @johnpoz said in Private Mac addresses in IOS14:

                      I don't really recall noticing this last time I was in a whole foods.. Last time was before covid.. Quite often stop at their in store taverns.. Tuesday's is 2$ bottle and can day at their instore bars.. And they normally have a decent selection..

                      So stop there after work many a tuesday for couple of cold ones ;)

                      But sure it behooves stores like this to control your internet access while your in the store, can prevent you from doing price compares, etc. Or atleast make it way more difficult - since hey odd how you can't get to store xyz site while on the whole foods wifi ;)

                      Problem could also be cell coverage in the middle of a HUGE store might just be spotty? But do believe amazon a few years back had a patent on such thing as controlling people in their stores internet access..

                      As I remember Best Buy was doing that at some point in time. Blocking access to mitigate using Best Buy stores as an Amazon showroom. Haven't been in a Best Buy in a dogs age so I can't comment on the current situation.

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        @jwj said in Private Mac addresses in IOS14:

                        using Best Buy stores as an Amazon showroom

                        hehehe - yeah this true.. Oh lets go see how the picture looks on tv xyz - then just order it on amazon for X $ cheaper ;)

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                        1 Reply Last reply Reply Quote 0
                        • DerelictD
                          Derelict LAYER 8 Netgate @A Former User
                          last edited by

                          @jwj Force is still a strong word. If you don't like their policies don't shop there.

                          Chattanooga, Tennessee, USA
                          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                          Do Not Chat For Help! NO_WAN_EGRESS(TM)

                          ? 1 Reply Last reply Reply Quote 0
                          • ?
                            A Former User @Derelict
                            last edited by

                            @Derelict said in Private Mac addresses in IOS14:

                            @jwj Force is still a strong word. If you don't like their policies don't shop there.

                            Maybe you missed the part where I said I got your point. I'll repeat it here: "So, point taken, I could just pay full price and not access their network."

                            1 Reply Last reply Reply Quote 0
                            • johnpozJ
                              johnpoz LAYER 8 Global Moderator
                              last edited by johnpoz

                              Yeah persuade or direct, nudge might be better terms vs force ;)

                              I can still just use them as amazon showroom... Without any internet access there, just know before hand what I want to look at.. Go look at them, and then order or not when get home.

                              Saving a nickel on the all natural peanut butter though - this really is heavy handed forcing if you ask me ;) hehehe

                              An intelligent man is sometimes forced to be drunk to spend time with his fools
                              If you get confused: Listen to the Music Play
                              Please don't Chat/PM me for help, unless mod related
                              SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                              ? 1 Reply Last reply Reply Quote 0
                              • ?
                                A Former User @johnpoz
                                last edited by

                                @johnpoz said in Private Mac addresses in IOS14:

                                Yeah persuade or direct, nudge might be better terms vs force ;)

                                I can still just use them as amazon showroom... Without any internet access there, just know before hand what I want to look at.. Go look at them, and then order or not when get home.

                                Saving a nickel on the all natural peanut butter though - this really is heavy handed forcing if you ask me ;) hehehe

                                Cost-Benefit. On a personal level: natural peanut butter? Yuck ;)

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Security vs convenience, the eternal trade-off. 😉

                                  1 Reply Last reply Reply Quote 0
                                  • johnpozJ
                                    johnpoz LAYER 8 Global Moderator
                                    last edited by johnpoz

                                    @stephenw10 said in Private Mac addresses in IOS14:

                                    Security vs convenience, the eternal trade-off

                                    So true, so true.. But not only "security" privacy as well.. Do I really want to make it easy for store xyz to know my purchasing habits, for the X% discount they give me if I use their rewards card, etc.

                                    People screaming about privacy, yet give their info away freely if there is anything in it for them that they value more... Like 0.05% discount on purchases, or get 1 free after I buy 5.. etc..

                                    And then scream about getting ads for XYZ in the store app on their phone - how did they know I like that?

                                    You can not have your cake and eat it too.. The whole reason company gives you discount X, is they know they will pull you back more often, or can use that info to get you to buy more, or sell that info to someone else - So they end up making way more than the tiny discount/reward they give you..

                                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                                    If you get confused: Listen to the Music Play
                                    Please don't Chat/PM me for help, unless mod related
                                    SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                    1 Reply Last reply Reply Quote 0
                                    • ?
                                      A Former User
                                      last edited by

                                      MVP, VIC, VIP, etc cards. I do have loyalty cards associated with xxx-555-1212. I have no idea if that does anything at all or if it even matters if someone knows I buy corn flakes twice a month.

                                      1 Reply Last reply Reply Quote 0
                                      • johnpozJ
                                        johnpoz LAYER 8 Global Moderator
                                        last edited by johnpoz

                                        @jwj said in Private Mac addresses in IOS14:

                                        have no idea if that does anything at all or if it even matters if someone knows I buy corn flakes twice a month.

                                        All comes down to how tight your tin foil hat is ;) heheheh

                                        Sorry but the genie is out of the bottle.. Companies have figured out that information is money... The more information I have about user X, the more money I can make if not off user X directly, there are many ways to monetize that info in all kinds of new ways..

                                        Hey milk company A, user X likes cereal - you could prob get him to buy your milk if you do xyz, etc.. For every user name I give you that uses products that would go good with your product, just give me X money..

                                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                                        If you get confused: Listen to the Music Play
                                        Please don't Chat/PM me for help, unless mod related
                                        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                        DerelictD ? 2 Replies Last reply Reply Quote 0
                                        • DerelictD
                                          Derelict LAYER 8 Netgate @johnpoz
                                          last edited by

                                          I navigated Vegas casino promotions for a few years looking for an edge.

                                          Grocery shopping is exponentially more difficult.

                                          Chattanooga, Tennessee, USA
                                          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                          Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                          1 Reply Last reply Reply Quote 0
                                          • ?
                                            A Former User @johnpoz
                                            last edited by A Former User

                                            @johnpoz said in Private Mac addresses in IOS14:

                                            @jwj said in Private Mac addresses in IOS14:

                                            have no idea if that does anything at all or if it even matters if someone knows I buy corn flakes twice a month.

                                            All comes down to how tight your tin foil hat is ;) heheheh

                                            Sorry but the genie is out of the bottle.. Companies have figured out that information is money... The more information I have about user X, the more money I can make not off user X, but there are many ways to monetize that info in all kinds of new ways..

                                            Hey milk company A, user X likes cereal - you could prob get him to buy your milk if you do xyz, etc..

                                            Sure! Knowing that means what? I'm actually interested in others opinions. As you have said before, being concerned about such things while having your smart phone with you 24/7 may be missing the point. When is it wise (slightly better than a fools folly) to take steps to prevent tracking and when is it just so much wasted emotional energy?

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.