VLAN for OpenVPN server

VLAN for OpenVPN server

VLAN for OpenVPN server
VLAN for OpenVPN server
Friday
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.6

hi all,

 

is there a possibility to assign VLAN to the OpenVPN server that I can set up ACLs to prevent access to some VLANs?

 

I've tried (based on some post found) to setup a VLAN with the same IP range as the VPN Server has and corresponding deny ACL - doesn't work - I can still access devices in any VLAN.

it seems, OpenVPN IP range is always a part of default network...

 

/BR ZoloNN ------------------------------------------------------------------------------------ Omada 2x ER605(UN) v2.0 + SG200P(UN) V3.20 + SG2218 V1.20 + 2x SG2008 V4.20 + 3x EAP615-Wall(EU) V1.0
  0      
  0      
#1
Options
3 Reply
Re:VLAN for OpenVPN server
Saturday

  @ZoloNN 

 

Do you have a screenshot of the OpenVPN Server configuration?


But if you choose split tunnel then you can choose which VLAN OpenVPN should have access to.
if you run full tunnel then you can try router WAN/IN ACL and block there

 

and do not use vpn ip pool that overlaps with any of your other networks or VPNs

 

 

 

  0  
  0  
#2
Options
Re:VLAN for OpenVPN server
6 hours ago

Hi @ZoloNN 

Thanks for posting in our business forum.

IP pools match what I set for the VLAN. I recall this could be done.

I created something on my controller in the past.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  0  
  0  
#3
Options
Re:VLAN for OpenVPN server
5 minutes ago

Hi @Clive_A and @MR.S 

 

sorry, but I need full tunnel mode due possible IP conflicts

 

/BR ZoloNN ------------------------------------------------------------------------------------ Omada 2x ER605(UN) v2.0 + SG200P(UN) V3.20 + SG2218 V1.20 + 2x SG2008 V4.20 + 3x EAP615-Wall(EU) V1.0
  0  
  0  
#4
Options