Skip to main content

Deny or allow IP addresses

Use IP denylists or IP allowlists to manage IP addresses in your organization.

Note

Any implemented restrictions do not apply to support users who access the system through impersonation.

Before you begin

  • You can use Classless Inter Domain Routing (CIDR) notation to specify a subnet mask.

Steps

  1. From the user menu, select Policy Management > IP Management.

  2. Manage denylists:

    1. Select the IP denylist tab.

    2. To edit a denylist, select a denylist name, change the displayed information, and select Save.

    3. To add an IP address to a denylist, select Add IP to denylist, specify the details, and select Add.

      Image shows the window for adding an IP address to an IP denylist
    4. Each denylist or allowlist entry applies to all environments (Development, QA, Production) by default. Once you save an entry, you can control which environments it applies to. Turn off the rule for specific environments by clearing the option where the rule should not apply.

      Image shows the window for managing an IP address in an IP denylist Cancel Update
  3. Manage allowlists:

    1. Select the IP allowlist tab.

    2. To edit an allowlist, select the allowlist name, change the displayed information, and select Save.

    3. To add an trusted host to an allowlist, select Add trusted host, specify the details, and select Add:

      Image shows the window for adding an IP address as a trusted host Cancel Update
    4. Each denylist or allowlist entry applies to all environments (Development, QA, Production) by default. Once you save an entry, you can control which environments it applies to. Turn off the rule for specific environments by clearing the option where the rule should not apply.

      Image shows the window for managing an IP address as a trusted host Cancel Update