USG310 - blocking ip from file

Przemek
Przemek Posts: 23  Freshman Member
edited April 2021 in Security
Is there any way to add firewall blocklist like from file like in this link without input one by one.

I don't know if it can be done even one by one I found that usg310 limit is 1000 address objects.
I think blocking all traffic by regions instead countries can be useful, my company is working on local and nearest countries market.

Accepted Solution

All Replies

  • Zyxel_Stanley
    Zyxel_Stanley Posts: 1,079  Zyxel Employee
    edited April 2019

    Hi @Przemek

    Welcome to Zyxel community. :)

     

    Currently USG doesn’t support add IP address object by importing the file.

    And GeoIP doesn’t support IP object by regions(city).

    I will add it into idea section.


  • Przemek
    Przemek Posts: 23  Freshman Member
    I meant regions like this to block bigger areas without input countries one by one.

    Many companies working on local or on few surrounding countries area and it can be useful to setup some firewall rules faster.
  • Hello, it would be a good idea to be able to import ips or ranges, etc ... from the object option, from a csv file

  • lalaland
    lalaland Posts: 73  Ally Member

    You can predefine address object on text file and paste all content in CLI mode. This is easier than Web gui operation.

    e.g

    address-object test 192.168.1.10

    address-object test1 192.168.1.20

    address-object test2 192.168.1.30

    address-object test3 192.168.1.40

    copy all contents and paste all in CLI.

Security Highlight