Information about predefined inbound rules
Predefined inbound rules allow you to manage control component access by automatically applying trusted IP addresses and prefixes to all existing and new overlays within a Smart Account. This feature eliminates the need for manual configuration per overlay and includes support for audit log entries for all allowed IP addresses.
An inbound rule includes the rule name, protocol and port range to which the rule applies, and source IP address or prefix information. You can create up to 200 inbound rules per fabric and up to 5 allowed list entries.
Note |
If you have dynamic IP requirements for an existing multitenant Cloud-Pro fabric hosted on AWS, you can request activation of Application Load Balancing (ALB) and Web Application Firewall (WAF) for the fabric. This option replaces the static IP allow list with WAF-based access control, removing the 200-rule limit and enabling scalable, flexible, and secure ingress management. To enable ALB and WAF, you must file a CSOne ticket and include a mandatory justification. Normal inbound rule management will not be available when ALB/WAF has been enabled on a fabric. This feature is irreversible once enabled. |
Feedback