How can I grant access to a local machine but restrict access to other machines and resources within the same local network?

0

I have a local network behind a Linksys WRT1900AC router. Several computers connect to the local network. Among those one particular machine, let's call it X1. I want to grant full access to this machine X1 to a user outside the network, either via VPN or Remote Desktop. However, I do not want to expose any network resources to that user other than access to X1 and its own physical resources such as hard disks.

I run Windows 10 on that machine X1, and have full admin rights to make chances to the router and X1 instance.

Anyone who can propose ideas how to disable local network access to "standard users" or a specific user group via a group policy or "incoming vpn connection settings" or other software solutions? Preferably I want to let the user to still have access to the internet from the X1 instance.

Please note the gateway and dns are at 192.168.1.1 and subnet is 255.255.255.0, and my X1 instance has a static IP of 192.168.1.7.

Matthias Wolf

Posted 2015-09-23T03:31:01.330

Reputation: 375

Answers

0

If you have a VLAN capable switch between the linksys, X1 and other machines then the simple answer is to enable VLANs and prevent the access that way.

Without it, if you can specify a second subnet on the linksys then use that but add a permanent static route to the primary network to a gateway that didn't exist on X1. Since X1 will contact the linksys for all non-primary traffic Internet will still work.

netniV

Posted 2015-09-23T03:31:01.330

Reputation: 261