On Mon, Nov 29, 2010 at 4:51 AM, James Bensley <jwbens...@gmail.com> wrote:
> I think it would be an useful feature to have; if you have a pfsense box at
> the end of a leased line, private virtual circuit or vpn, it would be good
> to check the device at the other has x MAC address to try and rule out any
> security features like a MITM attack or something like that...
>

If you're concerned about that, you need something cryptographically
secure - a VPN across it, not relying on something trivial to change.
Anyone smart enough to MITM a private circuit is most certainly going
to be able to spoof a MAC address.


On Mon, Nov 29, 2010 at 9:32 AM, Ryan Rodrigue <radiote...@aaremail.com> wrote:
> Is there a way to manually specify an IP to a mac in the ARP tables.

You can enforce static ARP on an interface.

---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org

Reply via email to