Help Center/ Web Application Firewall/ FAQs/ Protection Rules/ How Do I Allow Requests from Only IP Addresses in a Specified Geographical Region?
Updated on 2024-10-25 GMT+08:00

How Do I Allow Requests from Only IP Addresses in a Specified Geographical Region?

If you allow only IP addresses in a region to access the protected domain name, for example, only IP addresses from Shanghai can access the protected domain name, take the following steps:

Geolocation access control rules have higher priority than built-in WAF rules. If you configure a geolocation access control rule to allow IP addresses from a certain location, WAF then forwards traffic from those IP addresses without performing basic web protection checks.

  1. Add a geolocation access control rule: Select Shanghai for Geolocation and select Allow for Protective Action.

    Figure 1 Selecting Allow for Protective Action

  2. Configure a precise protection rule to block all requests.

    Figure 2 Blocking all access requests