- CheckMates
 - :
 - Products
 - :
 - CloudMates Products
 - :
 - CloudGuard - WAF
 - :
 - Re: Best Practice for creating IP Whitelist ACL fo...
 
Options
			
				
					
	
			
		
	- Subscribe to RSS Feed
 - Mark Topic as New
 - Mark Topic as Read
 - Float this Topic for Current User
 - Bookmark
 - Subscribe
 - Mute
 - Printer Friendly Page
 
				
					Turn on suggestions					
					
	
				
			
		
	
	
	
	
	
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
		Showing results for 
		
	
	
	
	
	
	
	
Are you a member of CheckMates?
×
          Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
      
    - Mark as New
 - Bookmark
 - Subscribe
 - Mute
 - Subscribe to RSS Feed
 - Permalink
 - Report Inappropriate Content
 
			
		
			
			
				
			Jump to solution
		
			
		
		
			
		
	
	
		
		
			
				
					
						
	
		
	
	
	
	
	
	
	
	
			
					
				
		
	
	
		
	
		
	
	
			
				
					
						
							Best Practice for creating IP Whitelist ACL for Web API Assets
						
					
					
				
			
		
	
		
	
	
	
	
	
	
	
	
			
					
				
		
	
Hello,
we're currently deploying CloudGuard WAF aaS for our public services and wanted to add semi-public services also, which we currently run through our old WAF with IP (and Subnet) Whitelisting.
As per the title: What's the recommended way to achieve this?
Thanks!
		1 Solution
	
Accepted Solutions
- Mark as New
 - Bookmark
 - Subscribe
 - Mute
 - Subscribe to RSS Feed
 - Permalink
 - Report Inappropriate Content
 
Hi Maxh,
You can use Custom Rules and Exceptions for achieving this.
Look for further details here: Setup Custom Rules and Exceptions | CloudGuard WAF
		2 Replies
	
- Mark as New
 - Bookmark
 - Subscribe
 - Mute
 - Subscribe to RSS Feed
 - Permalink
 - Report Inappropriate Content
 
Hi Maxh,
You can use Custom Rules and Exceptions for achieving this.
Look for further details here: Setup Custom Rules and Exceptions | CloudGuard WAF
- Mark as New
 - Bookmark
 - Subscribe
 - Mute
 - Subscribe to RSS Feed
 - Permalink
 - Report Inappropriate Content
 
Okay, I was on the right path then. I'd just create a custom rule which drops traffic if the IP is not in the list.


