Default Threat Protection
About Blocked Sites
The Blocked Sites feature helps protect your network from systems you know or think are a security risk. After
you find the source of suspicious traffic, you can block all connections from that IP address. You can also
configure the Firebox to send a log message each time the source tries to connect to your network. From the
log file, you can see the services that the sources use to attack
A blocked site is an IP address that cannot make a connection through the Firebox. All traffic from a blocked
IP address is denied. You can define two different types of blocked IP addresses.
Permanently blocked sites
Network traffic from permanently blocked sites is always denied. These IP addresses are stored in the Blocked
Sites list and must be added manually. For example, you can add an IP address that constantly attempts to
scan your network to the Blocked Sites list to prevent port scans from that site.
To block a site, see
Auto-blocked sites/Temporary Blocked Sites list
Packets from auto-blocked sites are denied for the amount of time you specify. You can choose to
automatically block sites that send unhandled network traffic.
To automatically block unhandled traffic, see
154
Block a site
permanently.
Block sites
temporarily.
Firebox X Edge e-Series
Need help?
Do you have a question about the Firebox X15 and is the answer not in the manual?