Manage the IP allowlist for an organization user in Vultr IAM to restrict which IP addresses and subnets can authenticate to the Vultr API on their behalf.
Access control restricts which IP addresses and subnets can authenticate to the Vultr API on a user's behalf. Every user's allowlist includes two default entries, Any IPv4 (0.0.0.0/0) and Any IPv6, that permit all addresses. Disable these default entries and add specific subnets to restrict API access to trusted networks only.
Follow this guide to manage API access control for a user using the Vultr Console or the Vultr API.
Use a root user account or a user with the Manage Users permission on the organization.
Log in to the Vultr Console.
Click the organization name in the top navigation bar.
Click Manage Organization.
Click Users.
Click the user you want to manage access control for.
Under API Access, locate the Access Control List section.
Click Add IP to Allowlist.
Enter the Subnet Address and Prefix you want to permit. The subnet address accepts an IPv4 or IPv6 address.
Click Add Subnet.
The subnet appears in the Access Control List table.
To remove a custom entry, click the Delete icon next to the entry and click Remove to confirm. To disable the default Any IPv4 or Any IPv6 entries, click the toggle icon next to the entry.
Disabling both default entries without adding a replacement subnet blocks all API access for the user. Add at least one trusted subnet before disabling the default entries.
0 Comments
Be the first to comment and share your perspective with the community.