Jump to content

I have an issue with my network where I’m limited to 7 MAC addresses (each MAC address is assigned a static IP address). I tried just using a cheap Tplink Router/WiFi AP to set up a small network so I could have more VMs. However if the network detects a router is being used, it blocks Internet to the IP address until it detects it is no longer be using as a router.

 

Changing the MAC address had no affect nor did changing the host name so I suspected the packets are being inspected for NAT. I purchased a PC Engine APU2C2 to use as a router to run pfsense on and use a vpn so the packets cannot be inspected. However I wanted to see if anyone here had any ideas as using a halves my band with bandwidth (30-40Mbps on a connection of up to 100Mbps) and make my ping quite high.

 

I currently use PIA as my vpn provider if that helps.

Link to comment
https://linustechtips.com/topic/899802-bypass-deep-packet-inspection/
Share on other sites

Link to post
Share on other sites

Anything I can do such as changing  some settings to get some more performance? Could the PIA Servers be a bottleneck? 

 

Also I spent £170 building that pfsense box so I would rather not replace it so quickly. Especially as after I move in July I won't have this stupid MAC Address limit so a vpn tunnel won't be needed anymore. 

Edited by MaroonLance
Added 2nd Paragraph
Link to post
Share on other sites

I mean, I'd just ask the network admin/your ISP to authorize your router. See if they will do that first.

For Sale: Meraki Bundle

 

iPhone Xr 128 GB Product Red - HP Spectre x360 13" (i5 - 8 GB RAM - 256 GB SSD) - HP ZBook 15v G5 15" (i7-8850H - 16 GB RAM - 512 GB SSD - NVIDIA Quadro P600)

 

Link to post
Share on other sites

Wait, your ISP does not allow a firewall/router? That's just weird. If the VM's are behind the host, it's a bit hard for it to being noticed as a separate host. But yes, easier to ask for permission to get things the way you want than being blocked for being clever I guess.

 

However, I do not see how DPI has anything to do with it, as packet inspection is simply identifying the actual data stream - not host identifying.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×