07-21-2021 09:32 AM
For our first rule in our Access Control Policy, we've got a geolocation block on incoming traffic from country X. There is no corresponding rule for outgoiong traffic to country X, however.
So, as I understand it, anyone in country X trying to initiate a new connection to us would have the packet dropped. However, someone trying to initiate a connection to country X from inside our network would be allowed through the firewall.
What I'm not clear on is, in the latter case, would the response packet from country X, which would hit the firewall with state "ESTABLISHED" rather than "NEW," still get blocked by the geolocation rule?
Solved! Go to Solution.
07-21-2021 09:49 AM
Since FW is statefull if the connection intiated from inside and allowed, the that should be ok.
if the intiation from outside should be blocked, your understanding correct ?
Do you see any issue, or is that just clarfication ?
07-21-2021 09:49 AM
Since FW is statefull if the connection intiated from inside and allowed, the that should be ok.
if the intiation from outside should be blocked, your understanding correct ?
Do you see any issue, or is that just clarfication ?
07-21-2021 10:54 AM
Thanks, Balaji. I was just looking for clarification.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide