Project

General

Profile

Actions

Feature #13796

closed

Restrict hardware address client (UUID string) login

Added by vicent lee almost 3 years ago. Updated almost 3 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
OpenVPN
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default

Description

Hello everybody,
I am using Netgate pfsense on Aws
Now i want trust the client login vpn server by restrict uuid string of app client
Ex : my device id of openvpn app in my phone is
6EB6C6BB-A88F-4366-A40E-90D013ED5999
when i use my vpn profile connect to the server with above id ( be trust in netgate server ), username, password correctly, my openvpn app will connect succesful
if the id not trust, will not connect although username password correctly
I read in this reference link
https://openvpn.net/vpn-server-resources/access-server-post-auth-script-host-checking/
So on Netgate pfsense, can i do my above request ?

If no have , can i order this feature, i will pay fee for it, or donate for develop team

Actions #1

Updated by Jim Pingle almost 3 years ago

  • Status changed from New to Rejected
  • Priority changed from High to Normal

It's not feasible. The client can lie about its UUID, there is no way for the server to know that it is accurate and unmodified.

Also the supplied link is for OpenVPN AS, not the open source/community OpenVPN.

Actions

Also available in: Atom PDF