Granular control by NetBird #1151

Open
opened 2025-11-20 05:24:54 -05:00 by saavagebueno · 2 comments
Owner

Originally created by @Gifff69 on GitHub (Aug 15, 2024).

Hi,

For my understanding, NetBird support peer-to-peer access control.
https://docs.netbird.io/how-to/manage-network-access

For "Traffic to private networks" case, how to control the end device without installing agent? Can add new request to use policy to control end device by using ip address / domain? i.e. client PEER, window1 --> web server-01 (ALLOW); client PEER, window2 --> web server-02 (BLOCK).
https://docs.netbird.io/how-to/routing-traffic-to-private-networks
some cases do not allow for agent installation or can slow down migration from legacy systems:

  1. Side-by-side migrations where part of your network is already using NetBird but needs to access services that are not.
  2. Systems that have limited operating system access. e.g., IoT devices, printers, and managed services.
  3. Legacy networks where an administrator is unable to install the agent on all nodes.

Also, same request on internet web access control by using ip address / domain. i.e. client PEER, iOS --> www.google.com (action: BLOCK).

Originally created by @Gifff69 on GitHub (Aug 15, 2024). Hi, For my understanding, NetBird support peer-to-peer access control. https://docs.netbird.io/how-to/manage-network-access For "Traffic to private networks" case, how to control the end device without installing agent? Can add new request to use policy to control end device by using ip address / domain? i.e. client PEER, window1 --> web server-01 (ALLOW); client PEER, window2 --> web server-02 (BLOCK). https://docs.netbird.io/how-to/routing-traffic-to-private-networks some cases do not allow for agent installation or can slow down migration from legacy systems: 1. Side-by-side migrations where part of your network is already using NetBird but needs to access services that are not. 2. Systems that have limited operating system access. e.g., IoT devices, printers, and managed services. 3. Legacy networks where an administrator is unable to install the agent on all nodes. Also, same request on internet web access control by using ip address / domain. i.e. client PEER, iOS --> www.google.com (action: BLOCK).
saavagebueno added the feature-request label 2025-11-20 05:24:54 -05:00
Author
Owner

@Gifff69 commented on GitHub (Aug 19, 2024):

Kindly share if any roadmap to add above feature. Thanks.

@Gifff69 commented on GitHub (Aug 19, 2024): Kindly share if any roadmap to add above feature. Thanks.
Author
Owner

@Gifff69 commented on GitHub (Aug 22, 2024):

Kindly share if any roadmap to add above feature. Thanks.

UP

@Gifff69 commented on GitHub (Aug 22, 2024): > Kindly share if any roadmap to add above feature. Thanks. UP
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: SVI/netbird#1151