Restrict IPSEC VPN to certain countries
Hi all,
I read this article about restricting ipsec connections to certain countries.
When I attempt to implement it, I find that I cannot select any wan interfaces in an address object.
In the article example (below image) it shows External (wan1) in the interface field but when I create a new address object it doesn’t show any active physical wan interfaces in the interface field.

Would using the Zone that contains the wan interface work?
We are running a Fortigate 81F with 7.4.12
thanks
