Control which IPs and countries can reach your organization — four related lists on one screen.
Before you start
The Manage Access Rules right.
Steps
Go to Settings → System Security → Access Blocks. There are four sections:
IP Whitelist / IP Blacklist
- Click Add (whitelist) or Block (blacklist).
- Enter an IP Address or CIDR Range (e.g.
192.168.1.100or10.0.0.0/24— IPv4 only) and an optional description. - Save. Whitelisted addresses always take priority over blacklisted ones if the same IP somehow ends up on both.
Temporary Blocks
- Click Add Temp Block.
- Enter the IP/CIDR, an optional description, a Duration, and a unit (Minutes/Hours/Days/Months/Years).
- Save. The row shows a live countdown to expiry.
- To make it permanent, click the Promote to blacklist (gavel) icon on the row instead of waiting for it to expire.
- There's no way to extend or shorten a temp block's duration after creation — only delete it or promote it.
Geo-Blocking
- Choose Block or Allow mode, then search for a country and submit.
- Read the banner carefully before adding your first allowed country: once any country is on the allow list, every other country is denied by default, regardless of the block list. With an empty allow list, every country is allowed except ones you've explicitly blocked.
- Use the swap-arrow icon on a country row to move it between Allowed and Blocked.
What you'll see
Changes apply immediately to incoming requests. See Access Blocks Explained for how these four mechanisms relate to each other and to automated detection rules.
相关条款
其他指南则回答与此相近的问题.
访问块解释
四个相关但截然不同的方法 控制谁可以到达你的组织, 全部在一个设置屏幕上: IP Whitelist——总是允许的,如果同一地址也被列入黑名单,则总是获胜. IP Blacklist——永久拒绝,直至被删除. 临时区块——在您设定的到期前被拒绝,然后自动失效(或者您可以提前将其推广到永久黑名单条目). 地理标记——允许或否认国家而不是地址。 允许列表翻转…
如何配置检测规则
注意:当前UI中没有可见"新规则"按钮——只编辑,启用/禁用,并删除已存在的规则. 创建路径存在于基础代码中,但界面中没有任何路径到达它. 不要寻找从零开始添加新规则的方法;在审核时确认这一点仍然是真实的. 调整现有自动检测规则的阈值,响应和通知行为. 在你开始之前 管理检测规则右(将安全部分其余部分所需的管理访问规则右(除此之外))——没有它,即使你试图直接到达检测规则,你也会被锁入只读日志子视图. 步骤 1. 进入设置 →…
如何审查系统访问日志
注意:用于此功能的设置登陆页卡曾被称作"可疑行为"——这个名称及其旧的URL sult(?tab=可疑-行为)是重命名后所留下的悬空;真实的,当前标签为"系统访问日志". 一个旧的书签或与 stale slaw 的链接仍然打开这个标签(未知的标签悄悄地倒回了第一个),它只是不会更新地址栏. 检查签名,会话活动,以及整个组织的安全事件——这是只读的日志;你不能直接从这里对一个条目采取行动. 在你开始之前 管理访问规则正确 。 步骤 1.…