On Thu, 19 Oct 2023 22:39:29 +0000, tincantech via Openvpn-users <openvpn-users@lists.sourceforge.net> wrote:
>-----BEGIN PGP SIGNED MESSAGE----- >Hash: SHA256 > >Hi, > >------- Original Message ------- >On Thursday, October 19th, 2023 at 23:11, Bo Berglund <bo.bergl...@gmail.com> >wrote: > > > >> Now I would like to add one more type, web-only: >> 4 - Clent can only access the web through the server side gateway but not the >> local LAN >> >> What is the simplest way to accomplish this? > ><snip> > >> I.e. is it enough to remove the route into the local LAN for this to be >> blocked >> and only allowing web access forwarding? > >This sounds like you want the --redirect-gateway flag 'block-local'. eg: >`redirect-gateway def1 block-local` > >Does that work for you ? > Thanks alot! Did not know about that flag! So I will create the extra service using that and I guess it will run. Will report back when done. Very useful reply! :-) -- Bo Berglund Developer in Sweden _______________________________________________ Openvpn-users mailing list Openvpn-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/openvpn-users