Firewall rule by Sub domain and private vpn allow acces

Need help to define firewall rules at a subdomain level. Is this posible? if not what alternatives we have?

I want to know also if we set a private vpn, we want to allow access only to the ip address inside this vpn.

This should work: If it’s the subdomain hostname, and NOT your VPN’s IP address, then block access.

Thank you so much sdayman. it works perfectly.

