How to forbid none AD Machines connect VPN

Version R80.10

I want to do the following function:

Only permit computer that already join AD connect vpn.Computer  that don't join AD deny connect vpn by Endpoint Security.

If this function can be done,thanks!