Provide different access through IPSEC

    Is it possible to implement Create IPSEC groups? For example.

    Group A to provide access to my internal networks + internet.
    Group B provide internet only.


  • @Daz22 Hi, you will need a RADIUS server and use the Framed-IP attribute and group the addresses by aliases. For a domain environment, see the answer in my thread. If you want just a simple setup, you can drop all the NPS/AD stuff there and install FreeRADIUS on the pfSense. If I remember correctly, the package allows to set IPs in the user properties.

