FortiADC
FortiADC enhances the scalability, performance, and security of your applications whether they are hosted on premises or in the cloud.
faical
Staff
Staff
Article Id 385291
Description

This article explains how to configure and apply a policy to block IP per Geo-location.

Scope

FortiADC.

Solution

Follow the steps below:

  1. Define 'Member' by adding the Countries to block, and apply the 'Deny' action:

 

geoIP2.png

 

  1. The default action should be 'Pass' in order to allow other Geo IPs to connect, except for Country 1 and Country 2:

geoIP1.png

 

  1. The following is the Geo IP list to be applied on the 'Application resources' level that belongs to the Virtual Server in use: 

apply_geo.png
Related document:
Using the Geo IP block list