USG310 - blocking ip from file

Przemek
Przemek Posts: 28  Freshman Member
First Comment Friend Collector Fifth Anniversary
edited April 2021 in Security
Is there any way to add firewall blocklist like from file like in this link without input one by one.

I don't know if it can be done even one by one I found that usg310 limit is 1000 address objects.
I think blocking all traffic by regions instead countries can be useful, my company is working on local and nearest countries market.

Accepted Solution

All Replies

  • Zyxel_Stanley
    Zyxel_Stanley Posts: 1,379  Zyxel Employee
    100 Answers 1000 Comments Friend Collector Seventh Anniversary
    edited April 2019

    Hi @Przemek

    Welcome to Zyxel community. :)

     

    Currently USG doesn’t support add IP address object by importing the file.

    And GeoIP doesn’t support IP object by regions(city).

    I will add it into idea section.


  • Przemek
    Przemek Posts: 28  Freshman Member
    First Comment Friend Collector Fifth Anniversary
    I meant regions like this to block bigger areas without input countries one by one.

    Many companies working on local or on few surrounding countries area and it can be useful to setup some firewall rules faster.
  • Carlos_SM
    Carlos_SM Posts: 3  Freshman Member
    First Comment Friend Collector First Anniversary

    Hello, it would be a good idea to be able to import ips or ranges, etc ... from the object option, from a csv file

  • lalaland
    lalaland Posts: 91  Ally Member
    First Answer First Comment Friend Collector Sixth Anniversary

    You can predefine address object on text file and paste all content in CLI mode. This is easier than Web gui operation.

    e.g

    address-object test 192.168.1.10

    address-object test1 192.168.1.20

    address-object test2 192.168.1.30

    address-object test3 192.168.1.40

    copy all contents and paste all in CLI.

Security Highlight