-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hi,

------- Original Message -------
On Friday, October 20th, 2023 at 00:31, Bo Berglund <[email protected]> 
wrote:


> On Thu, 19 Oct 2023 22:52:12 +0000, tincantech via Openvpn-users
> [email protected] wrote:
> 
> > I think I have misunderstood above.
> > 
> > You want to take away client access to the server LAN.
> 
> 
> Yes, I want these clients to only use the VPN server as a way to reach the
> Internet from anothere lo0cation than their own. But not allowing them to 
> reach
> into the VPN server's loacal LAN.


> > That must be done with the server firewall.
> > eg: block VPN IPs from sending to the server LAN.
> 
> 
> THat's IPTABLES, right?
> 

Yes, something along the lines of:

 iptables -A FORWARD -s $vpn_ip/$mask -d $srv_lan_ip/$mask -j DROP

HTH


-----BEGIN PGP SIGNATURE-----
Version: ProtonMail

wsBzBAEBCAAnBYJlMcAXCZBPl5z2a5C4nRYhBAm8PURno41yecVVVU+XnPZr
kLidAAD+PQf/RqRMMMZ7pBlKeXM1hyk41/PyoD0T5wL5kjksiveBbr+N4SkA
+OlKJg9s/oUGE8CnMFetE7cNrGpKqWxz0dnjkQ55LpVdyJtZUQruAossV158
8uMudv9k1RbqsQgjxrkJ1W5XmxGf375exsdo38abd5cKWZJh4OMuk/hw91Kg
8aNHrIAWNlXpY1u9IErrJ2tTa4to/XL8KPmtYkkiFscrLiI8K0KvftID8bG0
CQg5/RF8gBF/7qTWdCp77IIXs8EtMgt8c99YVVtW1xvKQNTcUUWyDL9nrsh9
vfqoUrJCoYtaQsEqPifQzZGx0ewAmM3Xub3NPHDwaZcru2fKQAhwAw==
=KVBZ
-----END PGP SIGNATURE-----

Attachment: publickey - [email protected] - 0x09BC3D44.asc
Description: application/pgp-keys

Attachment: publickey - [email protected] - 0x09BC3D44.asc.sig
Description: PGP signature

_______________________________________________
Openvpn-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to