Security Services > Geo-IP Filter
1262
SonicOS 5.8.1 Administrator Guide
Security Services > Geo-IP Filter
The Geo-IP Filter feature allows administrators to block connections to or from a geographic
location based. The SonicWALL appliance uses IP address to determine to the location of the
connection.
To configure Geo-IP Filtering, perform the following steps:
1. Enable Block connections to/from following countries to block all connections to and
from specific countries.
2. Select one of the two modes of Geo-IP Filtering:
–
All: All connections to and from the specified countries are blocked.
–
Firewall Rule-Based: Only connections that match an access rule configured on the
appliance will be blocked.
3. Select Enable logging to log Geo-IP Filter-related events.
4. Select the countries to be blocked in the table.
5. Optionally, you can configure an exclusion list to all connections to approved IP addresses.
To do so, go to the Geo-IP Exclusion Object pulldown menu and select an address object
or address group. All IP addresses in the address object or group will be allowed, even if
they are from a blocked country.