Manage network zones

Admins can manage network zones using the edit, block, delete and deactivate settings.

Edit a network zone

When managing network zones, you may need to make modifications by editing existing settings. Policies and rules are updated automatically when network zone settings are modified.

  1. In the Admin Console, go to Security > Networks.

  2. Select one of the existing network zone, and click Edit.

  3. Configure any of the fields.

  4. Click Save.

Block client IPs from accessing a network zone

A blocked network zone prevents client IPs from accessing any URL for the org and requests are automatically blocked prior to any type of policy evaluation. Admins can restrict access from IP zones that contain a list of IP addresses. They can restrict access from dynamic zones that contain a list of locations, ASNs, or IP types.

  1. In the Admin Console, go to Security > Networks.

  2. In the list of existing network zones, click Edit beside the network zone you wish to modify.

  3. To block the network zone, select the Block access from IPs matching conditions listed in this zone check box.

  4. Click Save.

Delete a network zone

When an IP zone or dynamic zone is deleted, all rules that use the deleted zone are affected.

If the network zone you want to delete is the only zone in any rule, you cannot delete the zone. Edit the rule to use a different zone, then perform the deletion again.

If the network zone you want to delete is not the only zone in any rule, you can delete the zone. The zone is removed from all the rules where it appears.

  1. In the Admin Console, go to Security > Networks.

  2. In the list of existing zones, click Delete next to the zone that you want deleted.

  3. In the Delete Zone dialog, click OK.

Deactivate a network zone

When a network zone is deactivated, Global Session Policies and authentication policy rules that use the deactivated network zone are affected.

  1. In the Admin Console, go to Security > Networks.

  2. In the list of network zone, click Inactive beside the network zone you want to deactivate.

Related topics

About IP zones