On 13/11/2021 22:21, Gert Doering wrote:
Hi,

On Sat, Nov 13, 2021 at 09:11:03PM +0000, lejeczek via Openvpn-users wrote:
I wonder if that would be pipe wishes to think it should be
possible - to deny clients to clients and then work with
exception, exclusion where a given client(s) would be allowed
a) to all
b) to one/some
unset client-to-client in the openvpn config, make sure "a given client"
has a known IP address (ifconfig-push in ccd/), then do the filtering
by iptables on the linux side.

gert
How can it be determined what ovpn does exactly to/with nftables? On most recent CentOS Stream 8 where firewalld is the tool to manage it, with 'direct' rules I fail to make it work - I keep making them looser increasingly but with NO 'client-to-clien' I'm unable to have clients talk one to another.

thanks, L.


_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to