This article describes what happens when a WAN IP/Public IP address is on a blacklist and how this can affect the ability to send emails, access websites, and maintain online reputation, and steps will be provided to help with checking the WAN IP, identifying if it is blacklisted, and resolve and prevent these issues.
Scope
FortiGate.
Solution
How to find a WAN IP/Public IP address on FortiGate:
- Access the FortiGate Web Interface: Check WAN IP/Public IP details in the dashboard if possible. Example here.
- Another way to find the public IP address is by using the following website: https://api.ipify.org
Example below:
How to Check if the WAN/Public IP is Blacklisted:
- Find the IP: Get the WAN/Public IP address.
- Visit a Blacklist Checker:
- Go to sites like https://multirbl.valli.org/ and https://www.fortiguard.com/services/antispam.
- Enter the IP: Type the IP address into the search box and hit enter.
- View Results: The tool will check the IP against multiple blacklists and show the results, indicating if the IP is flagged and by which blacklists.
Example below:
Consequences of a Blacklisted WAN IP:
- Email Issues:
- Blocked Emails: Emails might bounce back because servers reject them when the IP is blacklisted.
- Spam Folder: Even if delivered, emails could land in the recipient’s spam folder, making them easy to miss.
- Website Access Problems:
- Blocked Sites: Some websites might be blocked entirely, showing a ‘403 Forbidden’ error, preventing access to important services.
- Business Impact: This can cause delays, missed opportunities, and potentially hurt the
- Trust Issues: A blacklisted IP can make the network seem risky, damaging your reputation and complicating business relationships.
- Marketing Problems: Blacklisting can lower your website’s search ranking and prevent marketing emails from reaching customers.
How to Fix and Prevent IP Blacklisting:
- Check Regularly: Use tools like MXToolbox to see if the IP is blacklisted. Catching it early is key.
- Get Off the List: If blacklisted, contact the provider to remove it. Explain the issue is fixed.
- Fix the Problem: Identify what caused the blacklist, like a compromised device or email server issue, and resolve it.
- Contact Your ISP: If issues persist, ask the ISP for help, like assigning a new IP.
- Enhance Security: Upgrade the network security with better firewalls, anti-malware, and monitoring to avoid future blacklisting.
Conclusion:
Having a WAN/Public IP on a blacklist can cause problems for the network and the business. Being aware of the risks and regularly checking IP status, it is possible to avoid problems. Keep an eye on the IP and fix any issues quickly to stay in the clear.