Hello guys,
I've just launched a softether vpn server and I'm a beginner on this. I wanted to know if there is a way to ban the users by the hardware MAC of their devices or not? assuming I know their MAC address.
ban the users by hardware MAC of their devices
-
- Posts: 477
- Joined: Tue Sep 11, 2018 5:58 pm
Re: ban the users by hardware MAC of their devices
Your vpn will not see MAC as client may be behind a lot of routers
You can disable this only on router to which clients connect
You can disable this only on router to which clients connect
-
- Posts: 3
- Joined: Sat Feb 08, 2020 8:10 am
Re: ban the users by hardware MAC of their devices
Thank you for replying.
But I can see the mac of my devices correctly in mac address table. I'm 20000 kilometers away from my VPN server. assuming we can see the mac correctly, is there a way to ban the users?
But I can see the mac of my devices correctly in mac address table. I'm 20000 kilometers away from my VPN server. assuming we can see the mac correctly, is there a way to ban the users?
-
- Posts: 477
- Joined: Tue Sep 11, 2018 5:58 pm
Re: ban the users by hardware MAC of their devices
Now I also remember to see somewhere MAC addresses in SE manager....
But I used at that time only local network.
I have to check if MAC gets transported by TCPIP protocol going outside LAN
But anyway, I would not recommend focus on this as changing MAC address is trivial.
In Linux with "macchange" command. I remember I had also some code for windows xp buy not
remember name.
But I used at that time only local network.
I have to check if MAC gets transported by TCPIP protocol going outside LAN
But anyway, I would not recommend focus on this as changing MAC address is trivial.
In Linux with "macchange" command. I remember I had also some code for windows xp buy not
remember name.
-
- Posts: 477
- Joined: Tue Sep 11, 2018 5:58 pm
Re: ban the users by hardware MAC of their devices
I checked it with my fried:
if you use SE vpn Layer2 and all devices are in the same subnet /24 then MAC addresses are even used for communication
if you use Layer3 then clients are behind many routers and it is not guaranteed that router will not change MAC, very likely you wll see MAC address of the last router on the route to your vpn server
with the fact that canging MAC is the easiest thing in this world I do not recommend to spend time on this
if you use SE vpn Layer2 and all devices are in the same subnet /24 then MAC addresses are even used for communication
if you use Layer3 then clients are behind many routers and it is not guaranteed that router will not change MAC, very likely you wll see MAC address of the last router on the route to your vpn server
with the fact that canging MAC is the easiest thing in this world I do not recommend to spend time on this
-
- Posts: 3
- Joined: Sat Feb 08, 2020 8:10 am
Re: ban the users by hardware MAC of their devices
Hello again,
I almost realized. Thank you for answering. :)
I almost realized. Thank you for answering. :)