Firewall rules to block unwanted IP addresses
Options
Comments
-
Hello @Ludek
Is your Mail server perhaps on the LAN-side of your NSG50? Does this also mean that you are using 1:1 NAT or Virtual Server to allow clients from the Internet to access your Mail server?
If so, we have two solutions:
1. Black-listing IP Address:
Use the Outbound Rules to Deny the public IP address of Untrusted mail clients.
*Use commas to create multiple remote IP addresses.
2. White-listing IP Address:
Use the "Allowed remote IP" list to create a white-list of Mail clients (public IP addresses) that can access your Mail server.
*Use commas to create multiple remote IP addresses.
Clients from the Internet not in the allowed remote IP list are blocked by the NSG's default firewall rules.
Hope this helps!
Regards,
Barney
0
Categories
- All Categories
- 383 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 75 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 209 Service & License
- 335 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 889 Nebula FAQ
- 415 Security FAQ
- 233 Switch FAQ
- 203 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 62 Security Highlight