cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Feature Request: Geo Blocks on Port forwards

Highlighted
Conversationalist

Feature Request: Geo Blocks on Port forwards

It would be great if Meraki could support Geo blocking based on Port Forwards rather than a blanket block  using to / from countries layer 7 rule.

 

 

 

3 REPLIES 3
Highlighted
Building a reputation

Re: Feature Request: Geo Blocks on Port forwards

You could create a Group Policy with a Layer7 Firewall rule.  Then assign that Group Policy to the device that you are port forwarding to.  Would that work?

Highlighted
Conversationalist

Re: Feature Request: Geo Blocks on Port forwards

Is no one else interested in this feature? Just about every other firewall out there does this.

Firepower

Fortinet

Watchguard.

 

This can sort of be done with group policies but it is not granular at all and will block any outbound traffic to those countries. It also shows all the hits in the logs as layer 7 rules do not apply to inbound nat / port forward rules.

 

 

I'm surprised that this is not largely requests as it is such a basic feature that all decent firewalls should have.

 

Thanks

Highlighted
Kind of a big deal

Re: Feature Request: Geo Blocks on Port forwards

Geo blocking itself is one of the most useless features any firewall nowadays can have...

Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.