Page 1 of 1

MAC filtering with Access Lists for vpn users

Posted: Mon Jul 07, 2014 8:29 pm
by iarca
Hello Forum users,
I want each vpn user to connect to hub only with their specific user and device. I don't want them to share their user name/password each other. VPN users will use L2TP/IPSec with password.
I thought this can be done with MAC filtering. I created several test users and successfully created Accesss Lists for one of them. In my scenario, only the device (PC, laptop, mobile etc.) which passes the MAC filtering via Access Lists can access the VPN server. But I can see from Manage Sessions/MAC address table; MAC address has been given to a user/device who connects first. So I can not filter the connection according to device MAC address. I use dnsmasq to deploy IP addresses, this maybe needs to be corrected within dnsmasq, but I didn't understand.
Is there any solution to doing this MAC filtering in Softether software?
Thanks in advance....

Re: MAC filtering with Access Lists for vpn users

Posted: Thu Jul 31, 2014 6:04 am
by thisjun
In L2TP connection, the MAC address is virtual MAC address. You can see MAC address in MAC address table, however, it's not bound to unique user.