Feature Request: Implicit deny for ruleset #1450

Closed
opened 2026-04-05 19:28:41 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @kmanwar89 on 5/25/2025

Hi,

Love Pangolin, and I'm working on securing my setup. I'd like to only allow logins from my LAN (RFC 1918 IP's), Tailscale's subnet (100.X), etc., while blocking logins for all others (with the capacity to selectively allowlist).

Is it possible to add a feature, similar to a firewall or ACL rule, that does "implicit block" or "implicit allow", without needing to specify each allow/deny?

Use case here is the standard self-hoster who would want to allow their private IP's and block basically everything else. Thanks!

*Originally created by @kmanwar89 on 5/25/2025* Hi, Love Pangolin, and I'm working on securing my setup. I'd like to only allow logins from my LAN (RFC 1918 IP's), Tailscale's subnet (100.X), etc., while blocking logins for all others (with the capacity to selectively allowlist). Is it possible to add a feature, similar to a firewall or ACL rule, that does "implicit block" or "implicit allow", without needing to specify each allow/deny? Use case here is the standard self-hoster who would want to allow their private IP's and block basically everything else. Thanks!
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/pangolin#1450