VPN100 - Allow incoming L2TP VPN based on hostname
Options
All Replies
-
I don't think so....
A way I allow L2TP VPN is by FQDN like UserallowVPN.no-ip.org and the client runs DDNS the firewall only allow the matching IP of the DDNS.
0 -
Hi @ItsMe,
As PeterUK said. Using DDNS to restrict source addresses.
It is hard to implement hostname restrictions.
Kevin0 -
So maybe create an ACL for L2TP based on MAC addresses then?
Would that be possible?0 -
Hi @ItsMe,
We don't support L2TP based on MAC address. We will continue to improve this.
Thank you
Kevin
0 -
So what mechanism do you have to allow or disallow L2TP VPN for specific devices?0
-
Firewall rules. AKA Security policies, but it chews only ip addresses and not hostnames.0
-
So there's no way to control which device can or cannot connect over L2TP.
That's rather disappointing...
Thanks for the info anyways.0
Categories
- All Categories
- 440 Beta Program
- 2.9K Nebula
- 208 Nebula Ideas
- 127 Nebula Status and Incidents
- 6.4K Security
- 528 USG FLEX H Series
- 331 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.3K Wireless
- 50 Wireless Ideas
- 6.9K Consumer Product
- 292 Service & License
- 462 News and Release
- 90 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.6K FAQ
- 34 Documents
- 86 About Community
- 99 Security Highlight
Freshman Member
Guru Member
Zyxel Employee