On Mon, Nov 29, 2010 at 4:51 AM, James Bensley <jwbens...@gmail.com> wrote: > I think it would be an useful feature to have; if you have a pfsense box at > the end of a leased line, private virtual circuit or vpn, it would be good > to check the device at the other has x MAC address to try and rule out any > security features like a MITM attack or something like that... >
If you're concerned about that, you need something cryptographically secure - a VPN across it, not relying on something trivial to change. Anyone smart enough to MITM a private circuit is most certainly going to be able to spoof a MAC address. On Mon, Nov 29, 2010 at 9:32 AM, Ryan Rodrigue <radiote...@aaremail.com> wrote: > Is there a way to manually specify an IP to a mac in the ARP tables. You can enforce static ARP on an interface. --------------------------------------------------------------------- To unsubscribe, e-mail: support-unsubscr...@pfsense.com For additional commands, e-mail: support-h...@pfsense.com Commercial support available - https://portal.pfsense.org