How this question is not on the first place in your FAQ?!?!?!
I don't understand much about security.
but, instead of IP, wouldn't it be better to close the doors?
Making a white list of doors.
Would the rest be closed already? or already have it?
I saw about ip range. The list is very long.
https://www.countryipblocks.net/
Does this affect performance? How do you use it?
Doors will always have, the better way is to shut the source.
I am using Peerblock which work perfect, no significant impact of the performance, and blocks currently 800M IPs from the most dark and corrupted countries and territories like Russia, China, Balkans, Asia, South America (most are narco countries).
The WFP is not a caching DNS resolver, even if you somehow manage to import your "800M IPs" into simplewall, expect all sorts of integrity issues, from memory leaks over random packet drops to entire loss of connectivity. Microsoft specifically discourages from using the WFP as a glorified IP filter.
For that particular purpose there is other software like Pi-Hole, AdGuardHome or eBlocker.
...if I might add to the above: it might be lucrative to dump bazillion of record in Windows' ../hosts file. Do not do it.
Most helpful comment
The WFP is not a caching DNS resolver, even if you somehow manage to import your "800M IPs" into simplewall, expect all sorts of integrity issues, from memory leaks over random packet drops to entire loss of connectivity. Microsoft specifically discourages from using the WFP as a glorified IP filter.
For that particular purpose there is other software like Pi-Hole, AdGuardHome or eBlocker.