
g5vob (g5vob) asked a question.
I did some looking and I see that there is an option to block selected countries. However we only expect our users to be within the US. Then granting approval for conferences or vacations outside the US. It would be much easier to create a allows list, vs the specific block lists that is outlined in the process in the link attached. Is there a way I am missing to make an allowed list?
https://help.okta.com/en-us/Content/Topics/Security/healthinsight/blocklist-network-zone.htm

Yes, you can restrict access to the US and still have a group of users you allow when outside the US. We have a network zone for the US and configure our policies/rules to allow access when in that zone else deny. We then created other policies/rules to allow for an outside the US group of users to allow them access. We have a process that our security team reviews when someone wants to be put in the outside the US group.