Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
djmoz

6 posts

Wannabe Geek


  #2525673 19-Jul-2020 16:57
Send private message

Hi nztim and antonknee

 

You guessed right, I'm trying to restrict incoming traffic for a server to NZ only traffic - a UTM firewall sounds great for when the exisiting comes up for replacement, good tip!  I've become aware that some Ubiquiti devices can do this also, will need to use the list for other firewalls in the meantime.

 

 

 

Kind regards

 

 

 

Craig

 

 

 

nztim:
antonknee:

 

Out of interest OP, what are you trying to achieve? @djmoz

 



Probably create filter allow rules based on certain RSP / NZ IP addresses

As mentioned the best way to do this is to invest in a UTM firewall which does have a yearly subscription but allows you to write firewall rules based on Countries / ASNs that are dynamically updated without manual intervention

Sonicwall//fortinet/sophos are three common brands of UTM firewall that do this





nztim
4012 posts

Uber Geek
+1 received by user: 2710

ID Verified
Trusted
TEAMnetwork
Subscriber

  #2525918 20-Jul-2020 10:02
Send private message

djmoz:

 

Hi nztim and antonknee

 

You guessed right, I'm trying to restrict incoming traffic for a server to NZ only traffic - a UTM firewall sounds great for when the exisiting comes up for replacement, good tip!  I've become aware that some Ubiquiti devices can do this also, will need to use the list for other firewalls in the meantime.

 

Kind regards

 

Craig

 

 

Dont know about the Ubiquiti but here is an example of a rule where using a sonicwall where I allow certain traffic from Aus/NZ IP addresses

 

Click to see full size

 

The UTM keeps the Database of IP addresses up to date, though your subscription, then the allowed countries form the condition of the rule, no need to maintain lists yourself, all the hard work is done for you

 

 





Any views expressed on these forums are my own and don't necessarily reflect those of my employer. 


1 | 2 
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.