Forum Home
Press F1
 
Thread ID: 102101 2009-08-07 02:56:00 OpenVPN & VLANs - server config problem Erayd (23) Press F1
Post ID Timestamp Content User
798965 2009-08-07 02:56:00 Hi Guys,

I'm trying to set up OpenVPN to do the following:

Tunneling is done at layer 2 (tap)
There are several client groups, none of whom I can trust
The groups don't trust each other either
Each client group needs to be segregated on the server, in a way that I can trunk
Each client connecting to the server is assigned to a group based on their authentication information
There can only be one server instance
My current idea for achieving this is to put each client group into a separate vlan, but the problem is that one server instance == one tap interface, i.e. all client groups share the same tap interface, and therefore I can't find a way to separate them.

I am more than happy to do some more scripting to achieve this if required, but at the moment I'm stumped as to what I should do.

Any ideas?

Thanks,
Erayd
Erayd (23)
798966 2009-08-07 11:33:00 This may do what you wont:
www.tslab.ssvl.kth.se

Not based on OpenVPN, but could be an alternative.
ughnz (8297)
798967 2009-08-08 00:07:00 Sorry - thanks for the suggestion, but that completely misses the point of what I'm trying to do.

Note also that OpenVPN is basically a requirement - it would take a *very* compelling reason for me to ditch it and replace it with something else.
Erayd (23)
1