aws waf and reliability of geolocation of incoming request

0

From our application where user logs in we want to ensure that the request came from particular country. We tried GeoIP api 's and it is not accurate and yet times returns country that is not where exactly user logged in from.

I notice that WAF : https://repost.aws/knowledge-center/waf-allow-block-country-geolocation want to understand how reliable it is compared to other goiip providers.

1개 답변
2

Hi, based on WAF FAQ: https://aws.amazon.com/waf/faqs/

How accurate is your GeoIP database?

The accuracy of the IP Address to country lookup database varies 
by region. Based on recent tests, our overall accuracy for the IP 
address to country mapping is 99.8%. 

You also have to remember that some corporations have a global single internet access even if their branches are in multiple countries: all internet traffic originates from this single place and is seen as such on the internet even if staff from all over the work uses it.

Also, systems like Tor: https://en.wikipedia.org/wiki/Tor_(network) will "muddy the water"

So, think about all those possible circumventions when you implement geolocations-based rules.

Hope it helps!

Didier

profile pictureAWS
전문가
답변함 10달 전
profile picture
전문가
검토됨 10달 전
profile picture
전문가
검토됨 10달 전
  • Thank you for your prompt response. If we consider countries like Malaysia, Singapore, Brunei, and the Maldives, which are relatively small in size, is the geolocation accuracy still 99.8%? Has aws determined the specific accuracy level for each of these countries?

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠