There is talk in the ATP about black hole. I thought on the feature request page we were going to have a manual/advanced blackhole optional list where we could add an IP and all communication from and to for all services would be blocked instantly. Will this be possible in the future?
I understand, I won't be manually changing it. I would like to request an area to allow a list of IPs to be black-holed. I will add it to the feature request page. I thought what was there would have covered this.
Pardon my ignorance in the firewall (I'm a web guy) but... can't that be done with a firewall rule?
You will have to have 2 separate rules, for the source and the destination to make a 2 way block. Then you will have to have a host entry for each ip that you want. Can be a bit of a pain.
Also I believe there are some services on the UTM that can accept traffic before hitting the firewall. May be wrong on that, but I know other UTMs that work that way.
Pardon my ignorance in the firewall (I'm a web guy) but... can't that be done with a firewall rule?
You will have to have 2 separate rules, for the source and the destination to make a 2 way block. Then you will have to have a host entry for each ip that you want. Can be a bit of a pain.
Also I believe there are some services on the UTM that can accept traffic before hitting the firewall. May be wrong on that, but I know other UTMs that work that way.