Affected Versions: 8.2 and above
SecureAuth IdP is still accessible from countries that should be blocked.
You're using load balancer with SecureAuth IdP servers and the IP address of the load balancer is being passed to the SecureAuth IdP server.
1. Make sure the load balancer is passing the X-Forwarded-For IP header
2. Access the System info tab on the Realm that has the Country IP restriction enabled, under the IP configuration section, put in the IP addresses of your load balancer(s) on the Proxy IP List field. The IP list should be comma separated.
Please sign in to leave a comment.