Configure IP Blocking

The IP Blocking feature monitors network activities in real-time and blocks or allows connections between MBG and specific network blocks of IP addresses (netblocks) in CIDR format. Use the following procedures manage lists containing the netblocks, specify the order the lists are treated, and add the lists to MBG.  

Managing CIDR Lists

CIDR lists are available on the internet that contain netblocks for entrie countries. You can obtain these files and modify them for your needs. You can also create your own CIDR lists from scratch.

Use a text editor to create CIDR lists according the following format:

   # Block List Title

   4.17.135.32/27 # Comment

   4.17.143.0/28

Note:

Setting the Rules Mode

When you add a list, you must specify whether it is black (to block connections) or white (to allow connections). By selecting the rules mode, you determine which lists the MBG uses first, black or white. This sets the blocking strategy for your enterprise.

To set the operating mode:

  1. On the MBG main page, click the System configuration tab and then click IP blocking.

  2. In Rules mode, select either:

Note: MBG will always allow connections from local networks, ICPs, SIP trunk endpoints and the loopback connection, regardless of the rule order and list configuration.

Managing the Lists

In addition to being able to add new "white" and "black" lists, you can edit and delete existing lists.

To add a new IP blocking list:

  1. On the MBG main page, click the System configuration tab and then click IP blocking.

  2. Click the sign to display the Add IP blocking dialog.

  3. Enter the Name for this list.

  4. Select the Mode, either White (allowed) or Black (blocked).

  5. Click Choose File, navigate to the location of the list, select the list and click Open.

  6. Click Save to upload the file.

The new list is activated, and is now either allowing (white) or blocking (black) IP addresses.  

To edit an existing IP blocking list:

  1. On the MBG main page, click the System configuration tab and then click IP blocking.

  2. Locate the list you want to edit and click . The file is downloaded to your computer.

  3. Locate the file on your computer, edit it as required, and then save it.

  4. Return to the IP blocking screen, locate the file you wish to edit, and then click .

  5. Enter the Name for this list.

  6. Select the Mode, either White (allowed) or Black (blocked).

  7. Click Choose File, navigate to the list you edited, select the list and click Open.

  8. Click Save to save your changes.

The edited list is activated, and is now either allowing (white) or blocking (black) IP addresses.  

To delete an IP blocking list:

  1. On the MBG main page, click the System configuration tab and then click IP blocking.

  2. Locate the list you wish to delete and click .

  3. Click OK.

The deletion is confirmed.