Access Control
Manage allowlist, blocklist, filter, and location rules for an instance.
Overview
Access control contains four pages: Allowlist, Blocklist, Filter, and Location. Available fields and actions depend on the current instance and the options shown on each page.
The allowlist stores trusted IP addresses and CIDR ranges.
Add only sources you explicitly trust. Incorrect allowlist entries can weaken protection.
Actions
- Add: Enter an IP address or CIDR, such as
192.168.1.0/24. - Import: Add one
ip/maskentry per line, such as10.0.0.1/32. - Delete: Select a rule and confirm deletion.
- Clear all: Remove all allowlist rules after confirming the irreversible action.
The blocklist stores IP addresses and CIDR ranges that should be restricted.
Incorrect blocklist entries can interrupt legitimate traffic. Confirm the target before saving.
Actions
- Add: Enter an IP address or CIDR.
- Import: Add one entry per line.
- Delete: Select a rule and confirm deletion.
- Clear all: Remove all blocklist rules after confirmation.
Filters match traffic using protocol-specific fields.
Configure filters according to the application protocol. An overly broad rule can affect legitimate traffic.
Actions
- Add: Select the protocol and configure the fields shown in the form.
- Manage: Review, edit, delete, enable, or disable existing rules where those actions are available.
Location rules apply an available action to selected countries or regions.
Actions
- Set a rule: Select countries or regions and choose an action offered by the page.
- Clear blocked regions: Remove all regions from the blocked set.
- Clear allowed regions: Remove all regions from the allowed set.
- Delete: Select a location rule and confirm deletion.
Deployment
After saving access-control changes, select Deploy Policy to publish them to the instance.
