Unblock false positives in System Log
All blocklisted IPs in an IP chain must be included in the IP exempt zone for Okta to allow access.
Frequently audit the blocked events in your System Log to ensure that your configurations are correct.
-
In the Admin Console, go to .
-
Set the date filter.
-
Search for the security.request.blocked event.
-
DisplayMessage: Blocked request from IP [1.1.1.1], IPServiceCategory [ALL_IP_SERVICES]
-
EventType: security.request.blocked
-
Reason: NETWORK_ZONE_BLOCKLIST
-
Result: SUCCESS
-
-
If the IP zone or IP service category shouldn't be blocked, hover over the IP to see the ... menu, and then select Add to zone.
-
In the Add to Zone menu, select DefaultExemptIpZone.
-
Click Save.