VPN100 - Allow incoming L2TP VPN based on hostname
All Replies
-
I don't think so....
A way I allow L2TP VPN is by FQDN like UserallowVPN.no-ip.org and the client runs DDNS the firewall only allow the matching IP of the DDNS.
0 -
Hi @ItsMe,
As PeterUK said. Using DDNS to restrict source addresses.
It is hard to implement hostname restrictions.
Kevin0 -
So maybe create an ACL for L2TP based on MAC addresses then?
Would that be possible?0 -
Hi @ItsMe,
We don't support L2TP based on MAC address. We will continue to improve this.
Thank you
Kevin
0 -
So what mechanism do you have to allow or disallow L2TP VPN for specific devices?0
-
Firewall rules. AKA Security policies, but it chews only ip addresses and not hostnames.0
-
So there's no way to control which device can or cannot connect over L2TP.
That's rather disappointing...
Thanks for the info anyways.0
Categories
- All Categories
- 431 Beta Program
- 2.6K Nebula
- 168 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 368 USG FLEX H Series
- 294 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.7K Consumer Product
- 265 Service & License
- 409 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.9K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 83 Security Highlight