Results 1 to 2 of 2

Thread: Geoblocking

  1. #1
    Untangler
    Join Date
    Jan 2017
    Posts
    38

    Default Geoblocking

    Looking to block incoming traffic to the UT based on client country. Similar to this article:

    https://forums.untangle.com/firewall...oblocking.html

    This article shows how to use the firewall app which only blocks traffic based on port-forwarding rules. I'm looking to block based on the access rules (services mainly ipsec vpn/openvpn running on the UT). (Config -> Advanced -> Access Rules).

    Appreciate all who comment.

  2. #2
    Untangle Ninja Jim.Alles's Avatar
    Join Date
    Jul 2008
    Location
    Central PA
    Posts
    2,306

    Default

    Quote Originally Posted by jester95 View Post
    This article shows how to use the firewall app which only blocks traffic based on port-forwarding rules.
    No, that is not accurate. The use case was for port-forwarding, but could also be useful for IPv6 inbound.

    Country code information is not developed for a session unless the traffic transits the UtVM (sorry, what you are asking for is not possible)

    https://support.untangle.com/hc/en-us/articles/227729847-Geolocation-FAQ

    OpenVPN is an App, so you might be able to do something with that in the firewall as it exits NGFW, but I have no idea how VPN traffic is going to be tagged, you'll have to try it and see.
    Last edited by Jim.Alles; 07-02-2020 at 02:59 PM.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2