Showing results for 
Show  only  | Search instead for 
Did you mean: 

Who Me Too'd this topic

How to block the real IPs from CDN?

L1 Bithead

Is there any function that can makes the PA block the traffic of the real IP instead of CDN IPs?

We deployed the PA NGFW on the external side of our web server and enabled the Threat Prevention function. Because we are using the CDN, so from the web server, all the source IPs in the traffic are hosted by the CDN service provider.

So when the PA  NGFW blocks  the source IP addresses because of the attack behavior, is there any way to block the real IPs of the attackers nor the IPs hosted by the CDN provider?


Who Me Too'd this topic