VPN100 - Allow incoming L2TP VPN based on hostname
All Replies
-
I don't think so....
A way I allow L2TP VPN is by FQDN like UserallowVPN.no-ip.org and the client runs DDNS the firewall only allow the matching IP of the DDNS.
0 -
Hi @ItsMe,
As PeterUK said. Using DDNS to restrict source addresses.
It is hard to implement hostname restrictions.
Kevin0 -
So maybe create an ACL for L2TP based on MAC addresses then?
Would that be possible?0 -
Hi @ItsMe,
We don't support L2TP based on MAC address. We will continue to improve this.
Thank you
Kevin
0 -
So what mechanism do you have to allow or disallow L2TP VPN for specific devices?0
-
Firewall rules. AKA Security policies, but it chews only ip addresses and not hostnames.0
-
So there's no way to control which device can or cannot connect over L2TP.
That's rather disappointing...
Thanks for the info anyways.0
Categories
- All Categories
- 347 Beta Program
- 2.1K Nebula
- 114 Nebula Ideas
- 77 Nebula Status and Incidents
- 5K Security
- 44 USG FLEX H Series
- 246 Security Ideas
- 1.2K Switch
- 65 Switch Ideas
- 901 WirelessLAN
- 33 WLAN Ideas
- 5.8K Consumer Product
- 204 Service & License
- 326 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.8K FAQ
- 831 Nebula FAQ
- 401 Security FAQ
- 219 Switch FAQ
- 190 WirelessLAN FAQ
- 45 Consumer Product FAQ
- 136 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 71 About Community
- 61 Security Highlight