OpenVPN Access Control
-
Good afternoon all,
I have configured OpenVPN and everything is working, however, I would like to authenticate against LDAP ideally. This does work, however, there is no way to restrict access to certain user groups. Is this something that can be revisited from https://forum.pfsense.org/index.php?topic=36677.msg189711 or is it a dead horse? Would there be a way to add a security option like there is for L2TP access be an option, and then just have that AD user a member of a specific group that has a mapping in the groups setup?
Thanks,
- Marc
-
Sure, that works fine. Put the restrictions in the LDAP auth server entry in extended filter and such.
You can have multiple entries defined for the same target server, so if you want different servers to restrict to different groups, make additional auth server entries with different filters.