If a user or IP address is untrustworthy, you can manually
add the user or IP address to the blacklist. The FW then discards
all packets from or to the user or IP address.
The blacklist is a typical measure for security defense. The FW discards all packets that match the blacklist. The blacklist is more effective in filtering packets from or to specific users or IP addresses when compared with security policies.