WAF (Web Application Firewall)

In this module you will be able to manage all the geo IP blocks to prevent access to Carbonio CE’s webmail from unwanted countries.

For reference, this feature uses and works only with IPtables.

To access the resource, first go to the main menu and select Server. Then click on the WAF tab at the top.

When you see the settings, you must first enable the module.

The default setting is Disabled. Click the corresponding button to enable it. From here, you will need to configure each section according to your needs as the system administrator.

Rules: In this section is possible to set all your rules, by completing the basic informations: Ports, country and type of block. All rules will be created in a list under the Active Restrictive Rules section, with the possibility to modify (and save the changes) or delete the rule.

Pay attention to the syntax as explained in the description, and make sure the country you want to block/whitelist corresponds to the 2 letter ISO 3166 code.

Whitelist: In this section is possible to set a bypass to the general WAF rules.

All exceptions will be created in a list under the IP Addresses Active Rules section, with the possibility to modify (and save the changes) or delete it.

Update Geo IP: This section if useful in case you need to immediately update the IP geolocation database.

As GeoIP is the method of locating a server in a city/country by identifying its IP address, it requires the use of an accurate GeoIP database to properly work.

If you want to see the logs and statistics, go to the corresponding section from the main menu on the left side.

From here you can see all the blocks for the current month in a graphic, and the view for a specific date by clicking the day of the month in the calendar below.