Actions
Feature #13547
openLimit allowed VPN users based on group association
Status:
New
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
-
Start date:
Due date:
% Done:
0%
Estimated time:
Plus Target Version:
Release Notes:
Default
Description
Hi,
Currently I'm using Freeradius as my source of users who have access to VPN and the firewall. On the system side I can create a local user and assign it a group which has permission to login to pfsense.
With OpenVPN there is no option to force check if user has assigned a special group that is allowed for VPN access, and the only way to overcome this limit is to use TLS certificate pinned with the user for OpenVPN.
I would like a feature in OpenVPN to check if the user is part of a local group before allowing the connection.
Actions