IPS Whitelist GEO_RESTRICTION using domain name
Is there going to be an option in the future to whitelist geoblock IPS using a domain name? Currently only IP addresses affect geo_restriction, so, whitelisting all Microsoft servers in India is a bit like playing whack-a-mole. You can add a domain, but it throws an error (see screenshot below).32Views0likes4CommentsLAN Firewall rules - missing "IP range" in src/dst
Anyone else missing an ability to use Custom IP Range as a source or destination in LAN Firewall rule? We use CATO LAN Firewall to control traffic between two separate network zones terminated on two different internal firewalls. Since this is a local traffic in the site, we don't want to route it to Cato Cloud so it's not dependent on WAN links. That's why we use CATO LAN Firewall (formerly Local Routing). But the only options to set Source or Destination are: Global range, Host, Interface subnet, Network Interface and Any. Would be very useful if we can use Custom IP ranges and Host Groups there.23Views0likes1CommentInquiry About Remote Port Forwarding on IPsec Tunnel
Hi all, I am reaching out to seek clarification on a technical matter concerning our company's use of CATO SASE services. We currently utilize IPsec tunnels to connect our internal resources to the CATO Cloud, which has been instrumental in enhancing our network security and accessibility. We are considering the implementation of remote port forwarding to allow our team members and partners to connect to our company's internal website using the CATO Public IP address through the IPsec tunnel. This would provide a secure and convenient way for remote access to our internal resources. I have a few questions regarding this setup: Is it technically feasible to use remote port forwarding on an IPsec tunnel within the CATO SASE environment? Your expertise and guidance on this matter would be greatly appreciated.Solved39Views0likes2Comments