On Thu, 19 Oct 2023 22:39:29 +0000, tincantech via Openvpn-users
<openvpn-users@lists.sourceforge.net> wrote:

>-----BEGIN PGP SIGNED MESSAGE-----
>Hash: SHA256
>
>Hi,
>
>------- Original Message -------
>On Thursday, October 19th, 2023 at 23:11, Bo Berglund <bo.bergl...@gmail.com> 
>wrote:
>
>
>
>> Now I would like to add one more type, web-only:
>> 4 - Clent can only access the web through the server side gateway but not the
>> local LAN
>> 
>> What is the simplest way to accomplish this?
>
><snip>
> 
>> I.e. is it enough to remove the route into the local LAN for this to be 
>> blocked
>> and only allowing web access forwarding?
>
>This sounds like you want the --redirect-gateway flag 'block-local'. eg:
>`redirect-gateway def1 block-local`
>
>Does that work for you ?
>
Thanks alot! Did not know about that flag!

So I will create the extra service using that and I guess it will run.
Will report back when done.

Very useful reply! :-)


-- 
Bo Berglund
Developer in Sweden



_______________________________________________
Openvpn-users mailing list
Openvpn-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/openvpn-users

Reply via email to