IP Whitelisting
IP Whitelisting in Self Serve Portal (SSP)
To enhance the security of your production environment, Self Serve Portal provides an IP Whitelisting feature. This allows you to restrict API access so that only requests originating from your trusted servers' IP addresses are processed.
Why is IP Whitelisting Necessary?
- Enhanced Security: Even if your API credentials are compromised, unauthorized users cannot execute requests from unrecognized IP addresses.
- Controlled Access: It ensures that only your authorized infrastructure (e.g., your production servers or office network) can interact with Signzy’s production APIs.
- Audit Compliance: Helps meet internal and external security compliance requirements by demonstrating strict control over API access points.
How to Configure IP Whitelisting
Follow these steps to secure your Production V3 APIs:
- Navigate to IP Whitelisting under Security > IP Whitelisting in your portal.
- Select API Credential: Choose the specific Production V3 API Credential from the dropdown menu that you wish to secure.
- Fetch Details: Click the Fetch Details button to load the current configuration for that credential.
- Add IP Addresses/Subnets: Enter your server’s static IP addresses or CIDR subnets (e.g., 192.168.1.1 or 10.0.0.0/24).
- Review Recommendations: The portal may display Suggested IP Addresses. These are identified based on your recent API usage. You can easily add these to your whitelist if they represent your legitimate traffic, or remove them if they are not recognized.
- Enable and Save: Toggle the Enable switch and click Save. Once enabled, any request originating from an IP not on this list will be rejected by the Signzy gateway.
Best Practices
- Static IPs Only: Ensure you use static IP addresses. If your servers use dynamic IPs, you may inadvertently block your own access when the IP changes.
- Test Before Enabling: Double-check that all your production server IPs are included in the list before toggling the "Enable" switch to prevent service disruption.
- Regular Updates: Update your whitelist immediately whenever you add new servers or migrate your hosting environment.