1 stop plugin for authentication / managing iptables

Scripts which allow the use of special authentication methods (LDAP, AD, MySQL/PostgreSQL, etc).

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
User avatar
krzee
Forum Team
Posts: 728
Joined: Fri Aug 29, 2008 5:42 pm

1 stop plugin for authentication / managing iptables

Post by krzee » Thu May 27, 2010 5:54 am

http://www.eurephia.net/

This plug-in enhances OpenVPN by adding user name and password authentication in addition. An eurephia user account is a combination of minimum one OpenVPN SSL certificate and a user name with a password assigned. It is also possible to setup several eurephia user names to use a shared OpenVPN certificate.

If too many failed log-ins is attempted, eurephia will also automatically blacklist IP addresses, certificates or user accounts, depending on how the allowed failed attempts thresholds is set. The user accounts and certificates can also be manually blocked, and upon the next authentication (also within active sessions) the user will be rejected immediately.

eurephia supports dynamic firewall updates per connection/session on an OpenVPN based router/firewall. This means that each user account may have their own restricted access profile to the network, and you can control the network access with great granularity. This is achieved by using predefined iptables chains, which is activated after the user is authenticated. Which predefined iptables chain to use, depends on how you have setup the access profile for the user accounts and certificates.

by dazo!

Post Reply