cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
904
Views
0
Helpful
2
Replies

Using Firepower's Geolocation DB

ethutchinson
Level 1
Level 1

We are thinking of using Firepower's Geolocation database to block all incoming IP traffic from both China and Russia. My organization has no business dealing with any of those countries. That is not to say we do not see any traffic already blocked from both of those countries. We get lots of "dropped traffic from both in our logs. Has anyone else tried using this as a basis for a rule in their access policies? Are there any drawbacks to doing this?

2 Replies 2

balaji.bandi
Hall of Fame
Hall of Fame

I do not see any issue here, that is the purpose of the FW it should be the job as mentioned.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Marvin Rhoads
Hall of Fame
Hall of Fame

It's a common use case and I've used it successfully for multiple customers for both outgoing and incoming rules.

Review Cisco Networking for a $25 gift card