Enable Captive Portal while using L3 switch?
-
I currently have a L3 switch that is handling the core routing. All VLANs are configured on the switch and pfsense is acting as the gateway. I have static routes defined in pfsense the route to the switch for any of my VLAN subnets. DHCP is handling be a Windows DC. With this setup, is it still possible to leverage pfsense for captive portal functionality?
-
You can, by disabling MAC address filtering, but it's not as secure since you don't have a direct L2 connection.
Someone would only need to hop to a new IP address to potentially gain access, whereas with MAC filtering they would need to correctly guess a valid MAC+IP address combination.