Hello,
I would like to only allow (whitelist) connections from United States IP addresses to a single web server hosted behind my security gateway. It doesn't appear to be possible using the Geo Policy in R80.30.
Does anyone know if this is possible using Check Point? I was considering using a dynamic object, and updating it monthly from a list of IP addresses from IP2LOCATION's website, but the US list is 239k lines in CIDR format, and I'm fairly certain the gateway isn't going to like something that long.
Does anyone have a good solution to this problem?
Thanks!