<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>GEO IP &#8211; 21點情報網</title>
	<atom:link href="https://ailog.tw/lifelog/tag/geo-ip/feed/" rel="self" type="application/rss+xml" />
	<link>https://ailog.tw/lifelog</link>
	<description></description>
	<lastBuildDate>Sun, 13 Aug 2023 14:26:40 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
	<item>
		<title>讓Pfsense防火牆也有判別國家IP(GEO IP)的能力</title>
		<link>https://ailog.tw/lifelog/2023/08/13/pfsense-country-ip/</link>
		
		<dc:creator><![CDATA[blackjack]]></dc:creator>
		<pubDate>Sun, 13 Aug 2023 14:25:07 +0000</pubDate>
				<category><![CDATA[3C資訊]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[country IP]]></category>
		<category><![CDATA[GEO IP]]></category>
		<category><![CDATA[國家IP]]></category>
		<category><![CDATA[防火牆]]></category>
		<guid isPermaLink="false">https://ailog.tw/lifelog/?p=16517</guid>

					<description><![CDATA[使用過新世代防火牆設備的夥伴們一定知道，這些設備均有判別國家IP來源(GEO IP)的功能，但Pfsense這 &#8230; <p class="link-more"><a href="https://ailog.tw/lifelog/2023/08/13/pfsense-country-ip/" class="more-link">閱讀全文<span class="screen-reader-text">〈讓Pfsense防火牆也有判別國家IP(GEO IP)的能力〉</span></a></p>]]></description>
										<content:encoded><![CDATA[<p><span style="font-size: 18px;">使用過新世代防火牆設備的夥伴們一定知道，這些設備均有判別國家IP來源(GEO IP)的功能，但Pfsense這一套軟體式防火牆似乎還沒內建(Opnsense倒是已有內建這樣的功能)，因此小編今天要來介紹如何讓pfsense擁有過濾來源國別IP的能力。</span></p>
<p><span style="font-size: 18px;"><span id="more-16517"></span></span></p>
<p><span style="color: #0000ff; font-size: 18px;"><strong>一、情境</strong></span><br />
<span style="font-family: verdana, geneva; font-size: 18px;">Pfsense：2.2.4-RELEASE</span></p>
<p><span style="font-size: 18px;"><strong><span style="color: #0000ff;">二、IP情資來源</span></strong></span><br />
<span style="font-size: 18px;">官網</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><a href="https://github.com/herrbischoff">https://github.com/herrbischoff</a></span></p>
<p><span style="font-size: 18px;">國家IP專案頁面：</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><a href="https://github.com/herrbischoff/country-ip-blocks/tree/master/ipv4">https://github.com/herrbischoff/country-ip-blocks/tree/master/ipv4</a></span></p>
<p><span style="font-size: 18px;">舉例幾個範例國別的連結：</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;">[Japan]</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><a href="https://raw.githubusercontent.com/herrbischoff/country-ip-blocks/master/ipv4/jp.cidr">https://raw.githubusercontent.com/herrbischoff/country-ip-blocks/master/ipv4/jp.cidr</a></span></p>
<p><span style="font-family: verdana, geneva; font-size: 18px;">[Taiwan]</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><a href="https://raw.githubusercontent.com/herrbischoff/country-ip-blocks/master/ipv4/tw.cidr">https://raw.githubusercontent.com/herrbischoff/country-ip-blocks/master/ipv4/tw.cidr</a></span></p>
<p><span style="font-size: 18px;"><strong>三、Pfsense設定國別IP清單</strong></span><br />
<span style="font-size: 18px;">01、點選「Firewall」→「Aliases」</span><br />
<span style="font-size: 18px;"><img decoding="async" class="alignnone wp-image-16518 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip01.png" alt="" width="195" height="231" /></span></p>
<p><span style="font-size: 18px;">02、點選「URLs」頁面</span><br />
<span style="font-size: 18px;"><img fetchpriority="high" decoding="async" class="alignnone wp-image-16519 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip02.png" alt="" width="707" height="260" srcset="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip02.png 707w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip02-300x110.png 300w" sizes="(max-width: 707px) 100vw, 707px" /></span></p>
<p><span style="font-size: 18px;">03、輸入設定值</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><span style="color: #ff0000;">Name：</span><br />
輸入可識別的名稱<br />
</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><span style="color: #ff0000;">Description：</span><br />
輸入註解名稱<br />
</span><br />
<span style="font-family: verdana, geneva; font-size: 18px;"><span style="color: #ff0000;">Type：</span><br />
選擇URL Table (IPs)<br />
</span><br />
<span style="font-size: 18px;"><span style="font-family: verdana, geneva;"><span style="color: #ff0000;">在「URL Table (IPs)」欄位輸入參考網址所取得的url：</span><br />
</span>https://raw.githubusercontent.com/herrbischoff/country-ip-blocks/master/ipv4/tw.cidr</span></p>
<p><span style="color: #ff0000; font-size: 18px;">Update Freq. (days)：</span><br />
<span style="font-size: 18px;">選擇資料來源的更新頻率(以天為單位)</span><br />
<span style="font-size: 18px;"><img decoding="async" class="alignnone wp-image-16520 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip03.png" alt="" width="592" height="465" srcset="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip03.png 592w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip03-300x236.png 300w" sizes="(max-width: 592px) 100vw, 592px" /></span></p>
<p><span style="font-size: 18px;">04、資料確認無誤的話，點選「Apply Changes」套用設定</span><br />
<span style="font-size: 18px;"><img loading="lazy" decoding="async" class="alignnone wp-image-16522 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip04.png" alt="" width="897" height="252" srcset="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip04.png 897w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip04-300x84.png 300w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip04-768x216.png 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></span></p>
<p><span style="font-size: 18px;">05、接著到「Firewall」→「Rules」或「NAT」</span><br />
<span style="font-size: 18px;"><img loading="lazy" decoding="async" class="alignnone size-full wp-image-16523" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip05.png" alt="" width="210" height="288" /></span></p>
<p><span style="font-size: 18px;">06、在Source欄位，將「Type」選擇「Single host or alias」，在「Address」欄位輸入先前Aliases步驟所新增的物件名稱</span><br />
<span style="font-size: 18px;"><img loading="lazy" decoding="async" class="alignnone wp-image-16524 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip06.png" alt="" width="834" height="660" srcset="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip06.png 834w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip06-300x237.png 300w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip06-768x608.png 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></span></p>
<p><span style="font-size: 18px;">07、防火牆規則設定完畢的狀態</span><br />
<span style="font-size: 18px;"><img loading="lazy" decoding="async" class="alignnone wp-image-16526 size-full" src="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip07.png" alt="" width="1336" height="261" srcset="https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip07.png 1336w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip07-300x59.png 300w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip07-1024x200.png 1024w, https://ailog.tw/lifelog/wp-content/uploads/2023/08/pfsense-country-ip07-768x150.png 768w" sizes="auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px" /></span></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
