Pfsense & openvpn - pin user to access single ip on network

openvpn works. clients can login no problem.

How do i restrict a vpn user to only access 1 IP )or maybe 2 ips) on the internal network?


I cover creating OpenVPN rules to restrict by IP address in this video:

Thank you very much. Very helpful. I do have a follow-up:
Would the same or similar process apply if i wanted to authenticate via ldap (ie radius to restrict IP, Ldap to authenticate and openVPN)?


If you are using Ldap to auth OpenVPN that is generally a function run on the firewall unless you are using a separate VPN software.