[GH-ISSUE #3540] Country block posture checks does not work correctly at all #7134

Open
opened 2026-08-05 01:11:44 -04:00 by saavagebueno · 1 comment
Owner

Originally created by @Oriann on GitHub (Mar 19, 2025).
Original GitHub issue: https://github.com/netbirdio/netbird/issues/3540

Describe the problem

If I apply posture check with country blocking it does not work as expected. If I block only one country (for example United Kingdom) all my peers are not accessible from any device (only devices that are not routing peers).

To Reproduce

Steps to reproduce the behavior:

  1. Set up network
  2. Make posture chcek with one country that you wanna block
  3. See peers in android phone or another device
  4. Now remove posture check and see peers are back.

Expected behavior

Posture check via country blocking is resolved through peer geolocation.

Are you using NetBird Cloud?

No

NetBird version

0.34.0, android app 0.0.27
0.34.2 windows

Is any other VPN software installed?

No

Debug output

To help us resolve the problem, please attach the following debug output

Log attached

netbird-1742367361950.log.txt

Additional context

Add any other context about the problem here.

Have you tried these troubleshooting steps?

  • Checked for newer NetBird versions
  • Searched for similar issues on GitHub (including closed ones)
  • Restarted the NetBird client
  • Disabled other VPN software
  • Checked firewall settings
Originally created by @Oriann on GitHub (Mar 19, 2025). Original GitHub issue: https://github.com/netbirdio/netbird/issues/3540 **Describe the problem** If I apply posture check with country blocking it does not work as expected. If I block only one country (for example United Kingdom) all my peers are not accessible from any device (only devices that are not routing peers). **To Reproduce** Steps to reproduce the behavior: 1. Set up network 2. Make posture chcek with one country that you wanna block 3. See peers in android phone or another device 4. Now remove posture check and see peers are back. **Expected behavior** Posture check via country blocking is resolved through peer geolocation. **Are you using NetBird Cloud?** No **NetBird version** 0.34.0, android app 0.0.27 0.34.2 windows **Is any other VPN software installed?** No **Debug output** To help us resolve the problem, please attach the following debug output Log attached [netbird-1742367361950.log.txt](https://github.com/user-attachments/files/19334808/netbird-1742367361950.log.txt) **Additional context** Add any other context about the problem here. **Have you tried these troubleshooting steps?** - [x] Checked for newer NetBird versions - [x] Searched for similar issues on GitHub (including closed ones) - [x] Restarted the NetBird client - [x] Disabled other VPN software - [x] Checked firewall settings
saavagebueno added the triage-needed label 2026-08-05 01:11:44 -04:00
Author
Owner

@AkinoYuki commented on GitHub (Jul 25, 2026):

Agreed. I've allowed only connections from France.
As long as the posture check is enabled, I can't see any peers. Yet I'm connecting from French IP addresses.
Hence I gather that my IP is seen as coming from...well NOT France, and blocking access.
It would be good to have a means to see somewhere in the logs the reason why my IP is seen as coming from another country

<!-- gh-comment-id:5079430557 --> @AkinoYuki commented on GitHub (Jul 25, 2026): Agreed. I've allowed only connections from France. As long as the posture check is enabled, I can't see any peers. Yet I'm connecting from French IP addresses. Hence I gather that my IP is seen as coming from...well NOT France, and blocking access. It would be good to have a means to see somewhere in the logs the reason why my IP is seen as coming from another country
Sign in to join this conversation.
No Label triage-needed
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: DYNR/netbird#7134