Hi folks,

I've got a captive portal deployed on a simple LAN/WAN configured
current PFsense box.

All clients that I want to have transparent access to the internet
have a MAC bypass entry.

All other clients authenticate against the active portal.

The mac-bypass has over 300 entries in it.

I get network drops, slow traffic internal and external, and in
general network unhappiness (slow ping times, things just dropping off
the network, adding an additional MAC address when applying the
settings causes the web interface to hang). Disabling the captive
portal instantly makes everything work well again.

So, two questions please:

1. What is the limitation on the number of mac-bypass entries? And is
what I am seeing expected with 300 entries?

2. If I should not be doing this with 300 clients, is anyone using
another FOSS product to do MAC authenticated control outbound from
their firewall?

Thanks in advance...

Tim

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Commercial support available - https://portal.pfsense.org

Reply via email to