Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 22 Nov 1999 18:48:18 +0000
From:      Thordur Ivarsson <totii@est.is>
To:        visi0n <visi0n@aux-tech.org>
Cc:        thivars@est.is, "freebsd-net@FreeBSD.ORG" <freebsd-net@FreeBSD.ORG>
Subject:   Re: Client restriction with "MAC ADDRESS" ?
Message-ID:  <38398FF2.66B4514A@est.is>
References:  <Pine.LNX.3.96.991121165905.199B-100000@variola.chinatown.org>

next in thread | previous in thread | raw e-mail | index | archive | help
visi0n wrote:
> 
> On Sun, 21 Nov 1999, Thordur Ivarsson wrote:
> 
> > Hi there,
> >
> > Do FreeBSD allow me to control traffic from client checked from the MAC
> > address.
> >
> > My problem is that everyone is allowed to connect to the network it self
> > but I need to filter users at the boarder firewall. I will give any user
> > IP number from DHCP server but if someone fakes IP number then I have
> > problems.
> >
> > Some users buy the internet connection then they are given another IP
> > number, and passed over the boarder firewall. But to be sure I would
> > like to check if their MAC address matches the IP.
> >
> > Any solution?
> >
> > TIA
> >
> > Thordur Ivarsson
> >
> >
> > To Unsubscribe: send mail to majordomo@FreeBSD.org
> > with "unsubscribe freebsd-net" in the body of the message
> >
>         If these clients are connected in the same net segment they can
> forge mac addr too.
If they do they must have information on what mac address is used by
someone on the segment, and if that user uses the network at the same
time I will get arp errors, that have been tried here.

But can I filter traffic by MAC address?

Thordur


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?38398FF2.66B4514A>