Page 1 of 1

Apply different fw rules (dynamically) to users

Posted: Fri Oct 29, 2010 9:03 am
by feralert
Hi all,

I think this is possible and altough i recall reading it somewhere i cannot find it anymore going though the manual, howto and/or faqs on the openvpn website.

I have already a routed setup where clients (mostly xp) connect to a Debian OpenVPN server and authenticate to radius via PAM. They get assigned an ip dynamically when they connect and i want to setup dynamic iptables rules for them depending on username. Is this even possible? Can anyone point me in the right direction? Also, any guides or howtos would be greatly appreciated.

Thanks!.

Re: Apply different fw rules (dynamically) to users

Posted: Wed Nov 03, 2010 4:56 am
by krzee
you can do this by making your own --client-connect script (which can also assign the static ips)
im sure there are a bunch already made...
check this out, dazo's plugin does this and a lot more
viewtopic.php?f=16&t=4807&p=5334