mirror of
https://github.com/prowler-cloud/prowler.git
synced 2026-10-11 05:54:17 +00:00
Adds the US region to the data regions table and its egress IP to the networking page, so customers can reach cloud.us.prowler.com and allowlist the region they are hosted in.
38 lines
1.3 KiB
Plaintext
38 lines
1.3 KiB
Plaintext
---
|
|
title: 'Networking'
|
|
---
|
|
|
|
## Egress IP Addresses
|
|
|
|
Prowler Cloud makes outbound API calls to scan cloud provider accounts and connect to integrations. Allowlist these IPs in firewalls or security groups to restrict access to Prowler Cloud only.
|
|
|
|
Allowlist only the region hosting the account. Each region egresses from its own IP address.
|
|
|
|
| Region | IP Address | DNS |
|
|
|--------|------------|-----|
|
|
| EU (Ireland) | `52.48.254.174` | `egress.prowler.com` |
|
|
| US (N. Virginia) | `18.213.69.80` | `egress.us.prowler.com` |
|
|
|
|
Resolve the egress IP via DNS:
|
|
|
|
```bash
|
|
dig egress.prowler.com +short # EU
|
|
dig egress.us.prowler.com +short # US
|
|
```
|
|
|
|
<Note>
|
|
The egress IP addresses are stable, but it is recommended to periodically verify they remain current by querying the DNS names above.
|
|
</Note>
|
|
|
|
## Use Cases
|
|
|
|
Allowlisting Prowler Cloud's egress IP address enables:
|
|
|
|
- **Credential Usage Control**: Restrict where cloud provider credentials can be used from across AWS, Azure, GCP, and other providers
|
|
- **Kubernetes Security**: Limit inbound HTTPS traffic to clusters by allowing only Prowler Cloud's IP address
|
|
- **Compliance Requirements**: Meet security policies requiring allowlisting of external services
|
|
|
|
## Contact
|
|
|
|
For questions about networking, visit the [Support page](/support).
|