<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Block Devices from Accessing My Network]]></title><description><![CDATA[<p dir="auto">Hello all this is my first post and apologize if this is not the correct location for this topic or if it has been answered already. During my searching I have not been able to find any posts around this topic.<br />
I am looking to see if psSense can resolve my issue and replace my current network.</p>
<p dir="auto">Currently I am using a Netgear Nighthawk R700 router and this router allows me to use a feature called "Access Control" which allows me to block all connected devices on my network and I will need to manually go into the config and approve the device (by MAC address) to be allowed on LAN or Wifi. This is great feature to add for security, however it drastically drops the performance of the through put of the router.<br />
I am using a fiber connection with 1gig up/down. When connecting directly to the PON (passive optical network) I can get speeds of 940Mbps down to 970Mbps Upload when connecting to through the Netgear router without Access Control I get 600Mbps Down and 700+Mbps Upload. With Access Control on it drops to 200Mbps Down and 230Mbps Upload.</p>
<p dir="auto">1- Does pfSense have this type of feature to control devices on the network?<br />
2- If I built a pfSense box would it resolve my through put issue while restricting access?</p>
<p dir="auto">I hope someone can help provide some details to see what direction I need to go to resolve my issue</p>
<p dir="auto">Thanks in advance,</p>
<p dir="auto">H20FRKS</p>
]]></description><link>https://forum.netgate.com/topic/128412/block-devices-from-accessing-my-network</link><generator>RSS for Node</generator><lastBuildDate>Wed, 12 Aug 2026 18:02:48 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/128412.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 19 Mar 2018 18:47:43 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 21:34:06 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sammywoo">@<bdi>SammyWoo</bdi></a>:</p>
<blockquote>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/h20frks">@<bdi>H20FRKS</bdi></a>:</p>
<blockquote>
<p dir="auto">SammyWoo, are you saying building a pfSense server with better hardware will not resolve the through put issue I have?</p>
</blockquote>
<p dir="auto">Just the opposite.</p>
</blockquote>
<p dir="auto">Great thanks! I will continue my efforts to understand pfSense better and work on building a server.</p>
]]></description><link>https://forum.netgate.com/post/756242</link><guid isPermaLink="true">https://forum.netgate.com/post/756242</guid><dc:creator><![CDATA[H20FRKS]]></dc:creator><pubDate>Mon, 19 Mar 2018 21:34:06 GMT</pubDate></item><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 21:20:55 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/h20frks">@<bdi>H20FRKS</bdi></a>:</p>
<blockquote>
<p dir="auto">SammyWoo, are you saying building a pfSense server with better hardware will not resolve the through put issue I have?</p>
</blockquote>
<p dir="auto">Just the opposite.</p>
]]></description><link>https://forum.netgate.com/post/756239</link><guid isPermaLink="true">https://forum.netgate.com/post/756239</guid><dc:creator><![CDATA[SammyWoo]]></dc:creator><pubDate>Mon, 19 Mar 2018 21:20:55 GMT</pubDate></item><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 20:10:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/sammywoo">@<bdi>SammyWoo</bdi></a>:</p>
<blockquote>
<p dir="auto">Consumer boxes like the Netgear tend to have (not upgradable) weak cpu but friendlier management. Pfsense is a more generic solution with lots of possibilities but requires more expertise on your part on management and configuration, but just throw a better cpu at it if current hardware ain't cutting.</p>
</blockquote>
<p dir="auto">SammyWoo, are you saying building a pfSense server with better hardware will not resolve the through put issue I have?</p>
]]></description><link>https://forum.netgate.com/post/756231</link><guid isPermaLink="true">https://forum.netgate.com/post/756231</guid><dc:creator><![CDATA[H20FRKS]]></dc:creator><pubDate>Mon, 19 Mar 2018 20:10:57 GMT</pubDate></item><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 20:09:22 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jknott">@<bdi>JKnott</bdi></a>:</p>
<blockquote>
<p dir="auto">PfSense can't filter on MAC addresses, but there is a work around.  You can map IP addresses to MAC addresses and only allow those IP addresses through.  You can also allow only specified MAC addresses to get an IP address.  Since these methods are done with the DHCP server, they will have no effect on performance.</p>
</blockquote>
<p dir="auto">Thank you JKnott for your quick response. If I leverage the "Deny Unknown Clients" feature on the DHCP within PpfSense. Do you know if the unknown client mac address would be recorded somewhere in a log?</p>
]]></description><link>https://forum.netgate.com/post/756230</link><guid isPermaLink="true">https://forum.netgate.com/post/756230</guid><dc:creator><![CDATA[H20FRKS]]></dc:creator><pubDate>Mon, 19 Mar 2018 20:09:22 GMT</pubDate></item><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 19:19:13 GMT]]></title><description><![CDATA[<p dir="auto">Consumer boxes like the Netgear tend to have (not upgradable) weak cpu but friendlier management. Pfsense is a more generic solution with lots of possibilities but requires more expertise on your part on management and configuration, but just throw a better cpu at it if current hardware ain't cutting.</p>
]]></description><link>https://forum.netgate.com/post/756221</link><guid isPermaLink="true">https://forum.netgate.com/post/756221</guid><dc:creator><![CDATA[SammyWoo]]></dc:creator><pubDate>Mon, 19 Mar 2018 19:19:13 GMT</pubDate></item><item><title><![CDATA[Reply to Block Devices from Accessing My Network on Mon, 19 Mar 2018 18:57:26 GMT]]></title><description><![CDATA[<p dir="auto">PfSense can't filter on MAC addresses, but there is a work around.  You can map IP addresses to MAC addresses and only allow those IP addresses through.  You can also allow only specified MAC addresses to get an IP address.  Since these methods are done with the DHCP server, they will have no effect on performance.</p>
]]></description><link>https://forum.netgate.com/post/756217</link><guid isPermaLink="true">https://forum.netgate.com/post/756217</guid><dc:creator><![CDATA[JKnott]]></dc:creator><pubDate>Mon, 19 Mar 2018 18:57:26 GMT</pubDate></item></channel></rss>