[OpenVPN home] [Date Prev] [Date Index] [Date Next]
[OpenVPN mailing lists] [Thread Prev] [Thread Index] [Thread Next]
Google
 
Web openvpn.net

[Openvpn-users] Forcing a specified IP address


  • Subject: [Openvpn-users] Forcing a specified IP address
  • From: Damir Dezeljin <programing@xxxxxxxx>
  • Date: Sat, 4 Mar 2006 13:29:54 +0100 (CET)

Hi.

Is it possible to force a specified IP address to be used by the client depending on its RSA certificate?

I know I can use the push options to give some values to the client, however I would like to drop a connection if the client doesn't accept those values or if he changes its IP address?
This way I would like to achieve a limited access per-client basis.


If this is not possible using OpenVPN 2.0, is it possible using OpenVPN 2.1 or is such a functionaliti planed at all?


Is it possible to use a bridged and/or routerd configuration based on client certificates?
Few of my users need access to our LAN and so they are currently using a pridged network. Now I would like to implement a routed network for certain users as I understood it is easier to filter this trafic using iptables. This way only one port would be open for user connections. Afterwards a user will be connected to a bridged network with an IP from the 10.100.100.x range; on the other hand, outsources would be connected to a routed network with IPs in range e.g. 192.168.100.x .


Thanks and best regards,
Dezo

____________________________________________
Openvpn-users mailing list
Openvpn-users@xxxxxxxxxxxxxxxxxxxxx
https://lists.sourceforge.net/lists/listinfo/openvpn-users


Warning: require_once(../../../archive_common.php) [function.require-once]: failed to open stream: No such file or directory in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-03/msg00041.html on line 195

Fatal error: require_once() [function.require]: Failed opening required '../../../archive_common.php' (include_path='/usr/local/lib/php') in /home/openvpn/domains/openvpn.net/public_html/archive/openvpn-users/2006-03/msg00041.html on line 195