Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can pfBlockerNG block l2tp service of the pf ITSELF and only allow certain countres?

    Scheduled Pinned Locked Moved pfBlockerNG
    4 Posts 2 Posters 275 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D Offline
      danielckw
      last edited by danielckw

      Hello,

      I am new to pfsense. Please kindly help me.

      I faced a problem that i created a VPN firewall , which is a pfsense, that serves the L2tp services. I dont have problem with it. Now I want to limit the access of this firewall that not every one can use the VPN service. Now i would like to ask if that is possible?

      I indeed have already use the GeoIP and permit the countries that i would like to allow. This is not the problem, but i found that out of this list the VPN can still be connected, so i am start confusing if that can acutally works for protect the service of the pf itself.

      Thanks!

      Daniel

      1 Reply Last reply Reply Quote 0
      • NogBadTheBadN Offline
        NogBadTheBad
        last edited by NogBadTheBad

        Post your firewall rules, it should work.

        If you've just added the rules try killing the firewall states.

        I do something with SSH like this:-

        Screenshot 2019-05-03 at 18.53.41.png

        Screenshot 2019-05-03 at 18.54.23.png

        Andy

        1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

        1 Reply Last reply Reply Quote 1
        • D Offline
          danielckw
          last edited by

          Hello NogBadTheBad,

          Thanks for the screenshots! They are being the great help to me now i know what is the problem. I did not create the firewall rule using the list. However, i faced the problem that i do not have the "GEOIP" format in the option, and my screenshot is a bit difference of you.

          Maybe i have missed something again? Please advise.

          Thanksabc.png
          Daniel

          1 Reply Last reply Reply Quote 0
          • NogBadTheBadN Offline
            NogBadTheBad
            last edited by

            Install pfBlockerNG-devel

            Andy

            1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.