Unblock false positives in System Log

All blocklisted IPs in an IP chain must be included in the IP exempt zone for Okta to allow access.

Frequently audit the blocked events in your System Log to ensure that your configurations are correct.

  1. In the Admin Console, go to ReportsSystem Log.

  2. Set the date filter.

  3. Search for the security.request.blocked event.

    • DisplayMessage: Blocked request from IP [1.1.1.1], IPServiceCategory [ALL_IP_SERVICES]

    • EventType: security.request.blocked

    • Reason: NETWORK_ZONE_BLOCKLIST

    • Result: SUCCESS

  4. If the IP zone or IP service category shouldn't be blocked, hover over the IP to see the ... menu, and then select Add to zone.

  5. In the Add to Zone menu, select DefaultExemptIpZone.

  6. Click Save.

Related topics

IP zones

Supported IP service categories

Enhanced dynamic zones