It does seem that we have no way to block specific IP's on a NAT statement. You can blacklist IP's however via exchange according to out exchange admin, but he did warn, if it is a attacker, They will just attack from another IP. His recommendation to solve this issue was the change the users account username for authentication. How do I block an IP address from my router? - NETGEAR > Have you tried adding the IP address to the Block Sites list under > ADVANCED > Security > Block Sites? As the "Block Sites Help" on that page (on my D7000, V1.0.1.50_1.0.1) says: If you want to limit access to certain sites on the Internet, you need to set up content filtering. This stuff relates to Web browsing from the LAN, not external access How To Block IP Addresses To Protect Your WordPress Site

How to Block an IP Address with the IP Deny Tool

Using Windows Firewall to block a specific IP on Windows On Scope, select "These IP addresses" in the remote addresses section and add the problematic IP address in the Add dialog. On Action, choose "Block the connection." On Profile, leave the defaults of everything checked. Finally, on Name, give the rule a name and optionally a description.

Click the Start button and then type "cmd" (without the quotation marks) in the "search programs …

Cloud App Security IP block in Conjunction with Azure AD I had only a subset of users to which the conditional access policy "block login from risky IP's." Once I expanded that rule I see that by using the What If tool that the login attempt was blocked. Regardless, my users know to reject and report any incident during which they see an MFA authentication request on their smart phone apps since that IP Lookup Tool - Check IP Block info at ARIN - MxToolbox