Enable Captive Portal while using L3 switch?



  • I currently have a L3 switch that is handling the core routing. All VLANs are configured on the switch and pfsense is acting as the gateway. I have static routes defined in pfsense the route to the switch for any of my VLAN subnets. DHCP is handling be a Windows DC. With this setup, is it still possible to leverage pfsense for captive portal functionality?


  • Rebel Alliance Developer Netgate

    You can, by disabling MAC address filtering, but it's not as secure since you don't have a direct L2 connection.

    Someone would only need to hop to a new IP address to potentially gain access, whereas with MAC filtering they would need to correctly guess a valid MAC+IP address combination.