Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    webGUI & Client Certificate Authenticate

    webGUI
    2
    3
    88
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jsm03913 last edited by

      Hello all! Was wondering if it's possible to add client certificate authentication to nginx in pfSense? Or if it's something the devs are looking at implementing at some point in the future? Thanks!

      Gertjan 1 Reply Last reply Reply Quote 0
      • Gertjan
        Gertjan @jsm03913 last edited by

        @jsm03913 It already has the option to assign a dedicated LAN type port that accepts access to the GUI : all other LAN ports should have the GUI access firewall blocked.
        On the permitted LAN port, only accept access from one IP.
        Do not put this LAN port on a switch, use a direct-cable access.
        Lock down the device in a locker.
        Use a strong password.
        At that moment, access is already heavily secured.
        And you want more ? ;)
        Feel free to drop in a feature request https://redmine.pfsense.org/projects/pfsense/issues?set_filter=1&tracker_id=2

        1 Reply Last reply Reply Quote 0
        • J
          jsm03913 last edited by

          I am using a virtual pfSense box, so this is not an option. And yes - using client certificates is far more secure than using a username and password combination. That way, I also don't have to physically wired to the pfSense box, even if it wasn't virtual.

          I'll look at submitting a feature request. Thanks!

          1 Reply Last reply Reply Quote 0
          • First post
            Last post

          Products

          • Platform Overview
          • TNSR
          • pfSense
          • Appliances

          Services

          • Training
          • Professional Services

          Support

          • Subscription Plans
          • Contact Support
          • Product Lifecycle
          • Documentation

          News

          • Media Coverage
          • Press
          • Events

          Resources

          • Blog
          • FAQ
          • Find a Partner
          • Resource Library
          • Security Information

          Company

          • About Us
          • Careers
          • Partners
          • Contact Us
          • Legal
          Our Mission

          We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

          Subscribe to our Newsletter

          Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

          © 2021 Rubicon Communications, LLC | Privacy Policy