Using Firewalla with pfSense

Comments

7 comments

  • Avatar
    Firewalla

    Yes, bridge mode should work. Please see https://help.firewalla.com/hc/en-us/articles/1500012304202-Firewalla-Transparent-Bridge-Mode

     

    0
    Comment actions Permalink
  • Avatar
    Orcrist

    I have a couple of follow on questions.

    1 - How does Firewalla identify devices in bridge mode?  Normally it uses DNS (says it creates a name for every device in local dns), but since it won't be allocating names is it IP/MAC only?  Can it defer to an upstream DNS to resolve the dns-assigned names?

    2 - Can Firewalla still do normal things like block unknown devices, manage device groups, etc, in bridge mode?

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    1. Firewalla predicts the name of the devices using multiple methods, DHCP is most accurate. Firewalla doesn't resolve DNS actively to detect device names.

    2. See the bridge article I send earlier, it has all the things bridge mode can't do 

    0
    Comment actions Permalink
  • Avatar
    Orcrist

    I did read that entire article, but it does not mention how it handles client identification in bridge mode.  If Firewalla does not serve DHCP or DNS, how does it identify clients, both in the UI and for policies such as parental controls?

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    Firewalla can listen to DHCP, and there are many other ways to identify devices. Are you encountering any issues where devices are not getting correctly labeled?

    0
    Comment actions Permalink
  • Avatar
    Orcrist

    No - I am planning at the moment.  I use an internal DNS server for internal resolution.  I currently use my internal DNS for all device identification and manegement so I was curious if that would carry over.

    0
    Comment actions Permalink
  • Avatar
    Firewalla Team

    Firewalla identifies devices based on the device's MAC address, which is more reliable than the device name. That's also the key to how blocking features take effect.

    If you would like to use your internal DNS server, you can set it on Firewalla. Here is a guide to help: How to I configure specific DNS servers

    0
    Comment actions Permalink

Please sign in to leave a comment.