Hi,We have a FortiGate-600D.Our main rule of the firewall is to block
traffic from "Unwanted countries":This only seem to block traffic to the
SSL VPNOur main goal is to block traffic to the IP of the interface (or
DNS name).Currently it is possible ...
Hi,That policy (geolocation block) is already in place (and it's the
first rule of the firewall).So it's kinda strange that people (within
the geolocation block) can access the https://vpn.domain.com/.I'm not
sure why.Best Regards.