Hi folks,
I have implemented the NAT rule as per the KBA (which only covers v17, not v18) in an earlier post about GEOIP and blocking countries. In that thread I advised that the drop rule was working. I am not seeing any URL attacks as before I disabled ping on the external interface. The same IP addresses are still trying to connect to the XG though.
What I am seeing is the blocked IP addresses being reported as "blocked but allowed", why, logging of the rule is not ticked?
Ian
I have started a new thread because the original was about GEOIP not working.
This thread was automatically locked due to age.