This section explains how to configure an IP group and use it in a WAF allowlist for making all requests from IPs in the IP group called Trusted IPs bypass WAF checks.


  1. To configure an IP group:
    1. Provide the required name.
    2. Use the Select by IP Address option and add the required IP address.

  2. Select the IP group created in the previous step as the value for the Match option while creating a new allowlist rule.

  3. Select the desired action and save the WAF allowlist, as shown below.

  4. The following shows a complete WAF policy using IP group. As shown below, action is set as bypass for any client IP address which is part of the IP address group created in the previous step.