[strongSwan] VPN on-demand blackholing for unaunthenticated users

Andreas Steffen andreas.steffen at strongswan.org
Wed Nov 21 19:15:27 CET 2012


Hi,

would this scenario help you?

http://www.strongswan.org/uml/class-attributes/ikev2/rw-eap-md5-class-radius/

You can assign the blacklisted users via a RADIUS Class attribute
to a special confined network.

Regards

Andreas

On 11/21/2012 05:26 PM, kgardenia42 wrote:
> On a somewhat related point ... has anyone implemented anything like a
> captive portal with Strongswan?  What I'd like is to have users on a
> blacklist where rather than be banned from connecting they can connect
> but (for example) I give them a different DNS server which resolves
> everything to a webapp they have to engage with to renew their account
> or whatever.  Can anyone make any sugggestions on how to accomplish
> this with Strongswan?  I'm assuming some sort of plugin would have to
> be involved.


======================================================================
Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[ITA-HSR]==




More information about the Users mailing list