VPN100 - Allow incoming L2TP VPN based on hostname
All Replies
-
I don't think so....
A way I allow L2TP VPN is by FQDN like UserallowVPN.no-ip.org and the client runs DDNS the firewall only allow the matching IP of the DDNS.
0 -
Hi @ItsMe,
As PeterUK said. Using DDNS to restrict source addresses.
It is hard to implement hostname restrictions.
Kevin0 -
So maybe create an ACL for L2TP based on MAC addresses then?
Would that be possible?0 -
Hi @ItsMe,
We don't support L2TP based on MAC address. We will continue to improve this.
Thank you
Kevin
0 -
So what mechanism do you have to allow or disallow L2TP VPN for specific devices?0
-
Firewall rules. AKA Security policies, but it chews only ip addresses and not hostnames.0
-
So there's no way to control which device can or cannot connect over L2TP.
That's rather disappointing...
Thanks for the info anyways.0
Categories
- All Categories
- 429 Beta Program
- 2.6K Nebula
- 163 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 350 USG FLEX H Series
- 291 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 261 Service & License
- 406 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 82 Security Highlight