Skip to main content
live89
Explorer III
June 5, 2018
Question

Geo-Block VPN traffic

  • June 5, 2018
  • 1 reply
  • 2539 views

Hello

 

We have FGT1KD that is configured with about 70 VDOMs  (v5.4.8)

And we'd like to block IPsec VPN traffic based on geo-location

But we'd like to do that globally (from the global mode) instead of going each VDOM one by one

I tried implemeting local-in-policy from the global mode , but that command seems to be not recognized

 

Any ideas how to do that ?

 

    1 reply

    Toshi_Esumi
    SuperUser
    SuperUser
    June 5, 2018
    Aggregate internet path for all vdom through root b's on. Then you can use a regular policy to filter traffic there.