Apply different fw rules (dynamically) to users

Need help configuring your VPN? Just post here and you'll get that help.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Forum rules
Please use the [oconf] BB tag for openvpn Configurations. See viewtopic.php?f=30&t=21589 for an example.
Post Reply
feralert
OpenVpn Newbie
Posts: 1
Joined: Fri Oct 29, 2010 8:48 am

Apply different fw rules (dynamically) to users

Post by feralert » Fri Oct 29, 2010 9:03 am

Hi all,

I think this is possible and altough i recall reading it somewhere i cannot find it anymore going though the manual, howto and/or faqs on the openvpn website.

I have already a routed setup where clients (mostly xp) connect to a Debian OpenVPN server and authenticate to radius via PAM. They get assigned an ip dynamically when they connect and i want to setup dynamic iptables rules for them depending on username. Is this even possible? Can anyone point me in the right direction? Also, any guides or howtos would be greatly appreciated.

Thanks!.

User avatar
krzee
Forum Team
Posts: 728
Joined: Fri Aug 29, 2008 5:42 pm

Re: Apply different fw rules (dynamically) to users

Post by krzee » Wed Nov 03, 2010 4:56 am

you can do this by making your own --client-connect script (which can also assign the static ips)
im sure there are a bunch already made...
check this out, dazo's plugin does this and a lot more
viewtopic.php?f=16&t=4807&p=5334

Post Reply