MAC spoofing

Comments

3 comments

  • Avatar
    Firewalla

    If these are wireless devices, the best way is to use the firewalla AP7+VqLAN; Giving your kid their own SSID+password, and then it doesn't matter what they do, they will be forced to their own managed group. https://help.firewalla.com/hc/en-us/articles/36297022580499-Firewalla-Tutorial-Microsegmentation-and-Segmentation-with-AP7

    Still, good to have a chat with the kid too :)

     

    0
    Comment actions Permalink
  • Avatar
    Ian Ramler

    Thanks for the parenting advice lol. His warning was that he would be put on another VLAN if I saw this again. He doesn't need a lot of internal services so that could work. I was hoping maybe Firewalla did something advanced that I wasn't aware of. DHCP logs would be very nice to see, even if they only went back 7 days. The devices he spoofed were online and must have had active leases. He admitted he had tons of packet loss. It seemed like the devices may have actively been competing to be clients.

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    The only way to manage spoofed MAC is to use secondary authentication. Example using WiFI WPA-3 enterprise, or WPA2 with pass keys, both of these are supported by the Firewalla. 

    0
    Comment actions Permalink

Please sign in to leave a comment.