Control which IPs and countries can reach your organization — four related lists on one screen.
Before you start
The Manage Access Rules right.
Steps
Go to Settings → System Security → Access Blocks. There are four sections:
IP Whitelist / IP Blacklist
- Click Add (whitelist) or Block (blacklist).
- Enter an IP Address or CIDR Range (e.g.
192.168.1.100or10.0.0.0/24— IPv4 only) and an optional description. - Save. Whitelisted addresses always take priority over blacklisted ones if the same IP somehow ends up on both.
Temporary Blocks
- Click Add Temp Block.
- Enter the IP/CIDR, an optional description, a Duration, and a unit (Minutes/Hours/Days/Months/Years).
- Save. The row shows a live countdown to expiry.
- To make it permanent, click the Promote to blacklist (gavel) icon on the row instead of waiting for it to expire.
- There's no way to extend or shorten a temp block's duration after creation — only delete it or promote it.
Geo-Blocking
- Choose Block or Allow mode, then search for a country and submit.
- Read the banner carefully before adding your first allowed country: once any country is on the allow list, every other country is denied by default, regardless of the block list. With an empty allow list, every country is allowed except ones you've explicitly blocked.
- Use the swap-arrow icon on a country row to move it between Allowed and Blocked.
What you'll see
Changes apply immediately to incoming requests. See Access Blocks Explained for how these four mechanisms relate to each other and to automated detection rules.
관련 기사
이 질문에 대한 답변을 다른 가이드.
액세스 블록 설명
조직에 도달 할 수있는 제어하는 4 가지 관련하지만 명백한 방법, 모든 설정 화면 : IP Whitelist - 항상 허용, 항상 같은 주소도 블랙리스트가 있다면 승리. IP Blacklist - 제거 될 때까지 영구적으로 거부. 임시 블록 - 당신이 설정한 만료 될 때까지 거부, 다음 자동으로 lapses (또는 영구 블랙리스트 항목 일찍 홍보 할 수 있습니다). Geo-Blocking…
탐지 규칙을 구성하는 방법
참고 : 현재 UI의 "New Rule"버튼을 볼 수 없습니다. 편집, 활성화 / 비활성화 및 기존 규칙 삭제. 생성 경로는 underlying 코드에 존재하지만 인터페이스에 아무것도 도달합니다. 스크래치에서 새로운 규칙을 추가하는 방법을 찾지 마십시오. 검토 할 때 이것은 여전히 사실입니다. 기존 자동화된 검출 규칙의 임계값, 응답 및 알림 동작을 조정합니다. 시작하기 전에 관리 탐지…
시스템 액세스 로그 검토 방법
참고: "Suspicious Behavior"라고하는 데 사용되는 설정 랜딩 페이지 카드 - 그 이름과 오래된 URL slug (?tab=suspicious-behavior)는 이름에서 stale leftovers입니다. 실제, 현재 탭은 "System Access Logs"입니다. 오래된 책갈피 또는 stale slug에 링크는 여전히이 탭을 엽니 다 (잘 알려진 탭은 첫 번째로…