Why does an SF_CB_IP-related security policy appear in the event log?

Zyxel_Jeff
Zyxel_Jeff Posts: 1,206  Zyxel Employee
100 Answers 500 Comments Friend Collector Third Anniversary
edited September 11 in Security Service

Question :

Why is there an SF_CB_IP-related security policy event log? For instance, the source IP 10.10.123.33 was blocked by the security policy"SF_CB_10.10.123.33".

However, there is no security policy called "SF_CB_10.10.123.33".

Answer :

The event log message 'SF_CB' stands for Security Firewall_Client Block. The reason why IP 10.10.123.33 was blocked by the 'SF_CB_10.10.123.33' rule is that the user added the client 10.10.123.33 to the Block List. The user can navigate to Site-wide > Clients > Show policy clients to verify this.

If the user wants to allow the client 10.10.123.33 to access the internet again, they can change the client's status to 'Normal.


Don't miss this great chance to upgrade your Nebula org. for free! https://bit.ly/4g2pS9L