How to Create a Geolocation-Based Network Object

How to Create a Geolocation-Based Network Object

The geolocation database included with the CloudGen Firewall can match the IP address and network to the country it was issued to. This enables you to create access rules based on the physical location of the source or destination. Lists of countries or regions are combined in a reusable network object. Geolocation network objects are updated from the update servers and with every firmware release.

Note that creating a geolocation-based network object is limited to the forwarding firewall.

Create a Network Object

Create a network object and include all countries you want to use for your access rule.

  1. Go to CONFIGURATION > Configuration Tree > Box > Assigned Services > Firewall > Forwarding Rules.

  2. In the left menu, click on Networks.

  3. Right-click in the main area and select New. The Edit/Create Network Object window will open.

  4. Enter a Name.

  5. To include or exclude a region or country:

    1. Click the globe icon either in the Include or Exclude Entries section.

    2. In the Select Region/Country window, select the region or country.

    3. Click  OK .  

  6. Click Send Changes and Activate.

You can now select the geolocation network object you just created from the Source and Destination dropdown lists when creating access rules. Alternatively, you can find the network object icon in the Object Viewer in the Networks > Network Objects section.