Hello,
Looking at the MX security report generated by my MX, I can see all kinds of connections attempts  being stopped by IPS, which is great.
Is there a way to create a rule to deny these connection attempts from a specific country, like China?
Would I simply create a layer 3 firewall rule that says
"deny source <PUBLIC BLOCK> destination < INTERNAL NET>"
Something of that nature?