Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Restrict acces between computers based on mac address

    Firewalling
    5
    5
    502
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • hendiH
      hendi
      last edited by

      How can I restrict access to the LAN network between PCs, based on the mac address? All new devices should be able to assign an IP and have access to the Internet, but only certain macs should be able to access other computers, printers from the LAN network.

      Thank you

      GertjanG JKnottJ 2 Replies Last reply Reply Quote 0
      • GertjanG
        Gertjan @hendi
        last edited by

        @hendi said in Restrict acces between computers based on mac address:

        How can I restrict access to the LAN network between PCs

        Word's most known OS, "Windows" has you covered.
        Other OSs probably also.

        Delete the know network, and reconnect.
        You will see a message that asks if your 'new' network should be considered private or public.
        Chose public and you can't connect to any device on LAN - other devices can't connect to your PC.
        Only 'internet access' works.

        Btw : devices on the same network don't use the gateway/router (pfSense) to communicate with each other.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        Bob.DigB 1 Reply Last reply Reply Quote 1
        • Bob.DigB
          Bob.Dig LAYER 8 @Gertjan
          last edited by Bob.Dig

          @gertjan said in Restrict acces between computers based on mac address:

          Chose public and you can't connect to any device on LAN

          You still can connect but others don't.

          @hendi pfSense only works with IP-addresses, no MAC.

          1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott @hendi
            last edited by

            @hendi said in Restrict acces between computers based on mac address:

            How can I restrict access to the LAN network between PCs, based on the mac address?

            You can't. PfSense doesn't filter on MAC addresses.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            1 Reply Last reply Reply Quote 0
            • M
              michmoor LAYER 8 Rebel Alliance
              last edited by

              Get a switch that can do VACLs or PVLANs.
              Pfsense isnt the gear where this is done at.

              Firewall: NetGate,Palo Alto-VM,Juniper SRX
              Routing: Juniper, Arista, Cisco
              Switching: Juniper, Arista, Cisco
              Wireless: Unifi, Aruba IAP
              JNCIP,CCNP Enterprise

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.