OpenVPN setup questions
-
We want to use openvpn to AD for users.
We have 3 subnets and want 3 different set of users to access the subnets.Group 1 will have access to all 3 subnets.
Group 2 will have access to 1 subnet
Group 3 will have access to 2 subnet.
Using Windows AD for users.What will be the best way to do this?
H.
-
You might have to create three different OpenVPN Servers, each with it's own defined LDAP server with different authentication containers for your groups.
I don't think there's a way to pass group membership from LDAP into OpenVPN and change behavior, such as what traffic is allowed.
With three OpenVPN servers and assigned interfaces it'd be pretty easy.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.