    Guys, exist a way to identify a OS device automatically?

    I mean, nmap can help us, by u have to run some scripts, I want to know that once a device get connected by our DHCP, pfsense  detect the OS and latter run some batch that could kick the device from the network if the OS is from some X company?

    Just wondering?

    There is OS detection in firewall rules. It isn't perfect, but it can be reasonably accurate.

    Add a block rule, pick the OS you want to block (if it's there), and if it detects them, it will block them.

