IP allow lists

How to restrict the IP allow list for SonarQube Cloud

For SonarQube Cloud enterprises using Single Sign-On (SSO) authentication, access can be restricted to an allowed list of IP addresses. This restriction applies to the SSO user authentication, the Personal Access Tokens (PAT) generated by SSO users, and the Scoped Organization Tokens (SOT).

Note that:

  • You can configure maximum 500 IP addresses or ranges in your IP allow list.

  • You can use the Authentication domain APIarrow-up-right to retrieve an enterprise's IP allow list or to update a list.

  • You must be an enterprise admin to be able to configure your enterprise's IP allow list.

circle-exclamation

Configuring an IP allow list for your enterprise

  1. Retrieve your enterprise. For more details, see Retrieving and viewing your enterprise.

  2. Go to Administration > IP allow list.

  3. Enter the allowed IP addresses separated by a comma. Both IPv4 and IPv6 addresses with or without CIDR notation are supported. IP address examples:

    • 192.0.2.0

    • 198.51.100.0/24

    • 2001:0db8:130f:0000:0000:09c0:876a:130b

    • 2001:db8:130f::9c0:876a:130b

    • 2001:db8:abcd::/48

  4. Select the Save button.

Enter the list of allowed IP addresses in the box to restrict access to your SonarQube Cloud enterprise to this list.

Deleting your enterprise's IP allow list

  1. Retrieve your enterprise. For more details, see Retrieving and viewing your enterprise.

  2. Go to Administration > IP allow list.

  3. Remove all the IP addresses or ranges from the IP address(es) & CIDR ranges field.

  4. Select the Save button.

Last updated

Was this helpful?