Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to allow 1 or 2 IP addresses from country X to a website but block country X

    Scheduled Pinned Locked Moved pfBlockerNG
    3 Posts 2 Posters 341 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      daniel.christ
      last edited by

      Hello,

      We have a situation where using our current firewall we are blocking country X (using GeoIP blocking - With this firewall we are unable to whitelist a specific IP in the country). There are a few small offices in country X that need access to our website hosted at our headquarters to enter orders.

      We are looking to "possibly" add a firewall to have the web traffic go to that firewall (we have multiple external IP's available) and allow specific IP addresses through to the website AND still block country X. We are looking at the Netgate 6100 MAX pfSense+.

      To summarize, will a Netgate 6100 Max pfSense + allow me to set up rules allowing a specific IP address through while still blocking country X via GeoIP blocking using pfBlockerNG.

      Thanks for any help you can provide!
      Dan

      Bob.DigB 1 Reply Last reply Reply Quote 0
      • Bob.DigB
        Bob.Dig LAYER 8 @daniel.christ
        last edited by

        @daniel-christ Sure. For instance make that allow-rule a floating-rule.

        D 1 Reply Last reply Reply Quote 0
        • D
          daniel.christ @Bob.Dig
          last edited by

          @Bob-Dig thanks for the reply!
          Cool. I'll look into that. I have done some basic pfSense management, but am not as familiar with it as I would like to be. If you have any other suggestions, let me know!
          Thanks
          Dan

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.