<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[OpenVPN: eurephia plug-in]]></title><description><![CDATA[<p dir="auto">Hi everyone,</p>
<p dir="auto">I was wondering if there is a plan to support eurephia (<a href="http://www.eurephia.net/" target="_blank" rel="noopener noreferrer nofollow ugc">http://www.eurephia.net/</a>) in the next pfSense 2.0 release?</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/topic/36702/openvpn-eurephia-plug-in</link><generator>RSS for Node</generator><lastBuildDate>Sat, 06 Jun 2026 04:36:55 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/36702.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 26 Aug 2011 13:11:03 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Fri, 16 Sep 2011 19:06:12 GMT]]></title><description><![CDATA[<p dir="auto">Just upload a firmware update. Nothing mysterious about it. It should all work.</p>
<p dir="auto">Being able to properly filter wasn't really possible until 2.0. You can do it in 1.2.3 but it's not ideal.</p>
]]></description><link>https://forum.netgate.com/post/296125</link><guid isPermaLink="true">https://forum.netgate.com/post/296125</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Fri, 16 Sep 2011 19:06:12 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Fri, 16 Sep 2011 19:04:05 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a>:</p>
<blockquote>
<p dir="auto">It's not missing. Assign users a static IP using Client-Specific Overrides (CSC). Setup firewall rules to block them from reaching things you don't want.</p>
<p dir="auto">I doubt their program is compatible with FreeBSD/pf anyhow, and wouldn't be worth the trouble.</p>
</blockquote>
<p dir="auto">Thanks <a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a>! I thought it was impossible to filter incoming VPN traffic natively. In fact, I'm still running on 1.2-RELEASE and this feature was added to 1.2.3-RC1. I'm planning an upgrade to 2.0-RC3 really soon. What's the upgrade path to 1.2 -&gt; 2.0? I also heard 2.0-RELEASE was coming really soon!</p>
]]></description><link>https://forum.netgate.com/post/296123</link><guid isPermaLink="true">https://forum.netgate.com/post/296123</guid><dc:creator><![CDATA[nrgyz]]></dc:creator><pubDate>Fri, 16 Sep 2011 19:04:05 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Thu, 01 Sep 2011 20:31:57 GMT]]></title><description><![CDATA[<p dir="auto">It's not missing. Assign users a static IP using Client-Specific Overrides (CSC). Setup firewall rules to block them from reaching things you don't want.</p>
<p dir="auto">I doubt their program is compatible with FreeBSD/pf anyhow, and wouldn't be worth the trouble.</p>
]]></description><link>https://forum.netgate.com/post/294130</link><guid isPermaLink="true">https://forum.netgate.com/post/294130</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Thu, 01 Sep 2011 20:31:57 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Thu, 01 Sep 2011 20:28:21 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a>:</p>
<blockquote>
<p dir="auto">First I've heard of it, but I'm not sure what it really offers that would be beneficial. We can already do user auth, tls, etc. Would probably be easier to extend our login code to blacklist repeated failed logins than add some other plugin.</p>
</blockquote>
<p dir="auto">One thing that is missing in OpenVPN is the user-based network accces. I would like some external users (ex. consultants) to log into the VPN and have access to some systems (not the whole LAN).</p>
<blockquote>
<p dir="auto">eurephia supports dynamic firewall updates per connection/session on Linux based router/firewall running OpenVPN. This means that each user account may have their own restricted access profile to the network, and you can control the network access with great granularity. This is achieved by using predefined iptables chains, which is activated after the user is authenticated</p>
</blockquote>
]]></description><link>https://forum.netgate.com/post/294128</link><guid isPermaLink="true">https://forum.netgate.com/post/294128</guid><dc:creator><![CDATA[nrgyz]]></dc:creator><pubDate>Thu, 01 Sep 2011 20:28:21 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Sun, 28 Aug 2011 20:00:16 GMT]]></title><description><![CDATA[<p dir="auto">Hi !</p>
<p dir="auto">I cannot see a need to implement this, there are no differenes to the functionality now in 2.0 !?</p>
]]></description><link>https://forum.netgate.com/post/293557</link><guid isPermaLink="true">https://forum.netgate.com/post/293557</guid><dc:creator><![CDATA[trendchiller]]></dc:creator><pubDate>Sun, 28 Aug 2011 20:00:16 GMT</pubDate></item><item><title><![CDATA[Reply to OpenVPN: eurephia plug-in on Fri, 26 Aug 2011 15:08:15 GMT]]></title><description><![CDATA[<p dir="auto">First I've heard of it, but I'm not sure what it really offers that would be beneficial. We can already do user auth, tls, etc. Would probably be easier to extend our login code to blacklist repeated failed logins than add some other plugin.</p>
]]></description><link>https://forum.netgate.com/post/293346</link><guid isPermaLink="true">https://forum.netgate.com/post/293346</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Fri, 26 Aug 2011 15:08:15 GMT</pubDate></item></channel></rss>