What's new

client-specific rules and access policies

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

tratek

Occasional Visitor
Hi,

I want to grant one client access via VPN to specific local IP only and ensure he's unable to connect to other IPs within my network.
similar to https://openvpn.net/community-resources/configuring-client-specific-rules-and-access-policies/ concept

ClassVirtual IP RangeAllowed LAN AccessCommon Names
Employees10.8.0.0/24Samba/email server at 10.66.4.4[variable]
System Administrators10.8.1.0/24Entire 10.66.4.0/24 subnetsysadmin1
Contractors10.8.2.0/24Contractor server at 10.66.4.12contractor1, contracter2

How can I achieve that using openvpn on merlin? The server1 & server2 are up&running for a longer time, but now I need to ensure separation (e.g. server1 for my own use without limitation and server2 with user access to specific IP(s) only?)
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top