Support CIDR Notation in IP Allowlist and API Access Restrictions
Current Limitation
Workiva's IP allowlist currently supports only individual IP addresses or manually defined start/end IP ranges. CIDR notation (for example, xxx.xx.xxx.x/xx) is not supported.
Many organizations do not operate with a small set of fixed public IP addresses. Instead, their network teams provide approved IP ranges using CIDR notation, which is the standard format used across firewalls, VPNs, cloud platforms, and corporate network security configurations.
As a result, administrators must manually convert CIDR blocks into multiple IP ranges before configuring Workiva access restrictions. This creates additional operational effort and increases the risk of configuration errors.
Proposed Enhancement
Add native support for CIDR notation within the Workiva IP allowlist and API access restrictions.
Examples:
203.0.113.0/24198.51.100.0/22- IPv6 CIDR ranges as applicable
The platform could automatically translate the CIDR block into the corresponding IP range internally while preserving the existing allowlist functionality.
Business Impact
This enhancement would:
- Align Workiva with industry-standard network security practices.
- Simplify administration of IP-based access controls.
- Reduce manual effort and configuration mistakes.
- Improve support for customers whose approved network access is managed through CIDR blocks rather than fixed IP addresses.
- Facilitate secure deployment of API integrations restricted by network location.
- Improve scalability for large enterprises managing multiple network segments.
请先登录再写评论。
评论
0 条评论