Geolocation ACL is not working

Geolocation ACL is not working

Geolocation ACL is not working
Geolocation ACL is not working
4 hours ago - last edited 3 hours ago

Hello, 

I have an OMADA ER7206 V1 1.4.1

 

i am constantly receiving WAN PING ATTACKS from China. 

I have put in an ACL that blocks all protocols from location "china" WAN IN, "Ipgroup-all" and yet I am still receiving the alerts. 

The IP is a fixed line ISP in China, so any networking provider that gives you geo-data on IPs should have it accurate. 

Why would that be? Please let me know how to fix this. 

 

  0      
  0      
#1
Options
1 Reply
Re:Geolocation ACL is not working
an hour ago

  @Domada 

 

There is something missing on the router ACL, wan/in does not work on the wan interface itself but from wan to lan, port NAT and things like that will be blocked from country. If I compare with e.g. unifi, there is acl for internet local, translated to tp-link, wan local that we need to make this work. For now, there is no way to block access to wan directly, that is, there are some settings under Attack Defense that can block ping. There are still some ACLs missing on the router, strange that it is not prioritized.

 

 

 

 

  0  
  0  
#2
Options