Univention Bugzilla – Bug 51792
Implement Unicast Feature for WoL Magic Packets
Last modified: 2020-08-11 11:19:07 CEST
With Bug#51074 we implemented the feature of "Subnet Directed Broadcasts" which will send the magic packet to the broadcast address of the target IP network. Due to security reasons customers have limited such network broadcasts coming in from other networks. Request now is to add an UCRV containing the IP address of a device in the target network usually the router) which will convert the unicast packet to a local broadcast packet. You will need static ARP entries in the router/ firewall. AFAIK uib does it in a similar way with opsi.
Can't the customer just add a rule to its packet filter allowing broadcast packages from the IP address of the school server?
Technically, this could be done, indeed. But "due to security reasons customers have limited such network broadcasts". IT is not for technical reasons.
This feature request was originally filed by me. The issue is not that we, as a customer, have disabled directed broadcasts inside our network. It's our firewalls that do not have this feature. We are using pfSense in our network and the underlying FreeBSD has simply disabled the flag to enable allow directed broadcasts due to security reasons.