Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    DHCP static IP request for development to add auto firewal rules

    Scheduled Pinned Locked Moved DHCP and DNS
    2 Posts 2 Posters 389 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      nhscan
      last edited by

      DHCP static entries it would be nice to be able to have a checkbox in DHCP Static Mappings to allow or bock WAN access rules based on ip or Mac address with one click right there. I have a little lot of iot stuff and cameras I like to block access to wan however it is currently a pain in the butt to create a static entry and then have to go and block it on the firewall if we just had a simple check box there to get automate the rule to block it I think would be very helpful.

      bingo600B 1 Reply Last reply Reply Quote 0
      • bingo600B
        bingo600 @nhscan
        last edited by

        @nhscan
        My best suggstions are :

        1:
        Create a dedicated IoT Lan/Vlan , and do the Internet Access , blockking there.

        2:
        Make your IoT "Internet Access" block rule, use an Alias for the matching source IP's.
        Then it's just a matter of adding the newly created IoT IP, to the Alias.

        I would recommend 1 , as you can do a Lan/Vlan wide block.
        And it doesn't matter if the IoT "thingy" pull's another DHCP IP by "mistake".

        /Bingo

        If you find my answer useful - Please give the post a šŸ‘ - "thumbs up"

        pfSense+ 23.05.1 (ZFS)

        QOTOM-Q355G4 Quad Lan.
        CPUĀ  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
        LANĀ  : 4 x Intel 211, DiskĀ  : 240G SAMSUNG MZ7L3240HCHQ SSD

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.