IP address whitelists are used to specify whether clients can access ApsaraMQ for RocketMQ instances. You can configure an IP address whitelist for an ApsaraMQ for RocketMQ instance to allow clients in specific CIDR blocks to access the instance.
Feature description
After you create an ApsaraMQ for RocketMQ instance, the default CIDR block in the IP address whitelist is 0.0.0.0/0, which specifies that client IP addresses in all CIDR blocks can access the instance.
If you configure an IP address whitelist for an ApsaraMQ for RocketMQ instance, only client IP addresses in the IP address whitelist can access the instance.
You can add public IP addresses, internal IP addresses, or CIDR blocks to an IP address whitelist.
Usage notes
After you remove an IP address from an IP address whitelist, the corresponding client can no longer access the ApsaraMQ for RocketMQ instance. Proceed with caution when you remove an IP address from an IP address whitelist.
Add IP addresses or CIDR blocks to an IP address whitelist
Log on to the ApsaraMQ for RocketMQ console. In the left-side navigation pane, click Instances.
In the top navigation bar, select a region, such as China (Hangzhou). On the Instances page, click the name of the instance that you want to manage.
In the left-side navigation pane of the page that appears, click Access Control.
On the Access Control page, click the IP Address Whitelist tab. Then, click Add IP Address.
In the Add IP Address panel, specify the IP addresses or CIDR blocks that you want to add to the IP address whitelist and click OK.
NoteSeparate multiple IP addresses or CIDR blocks with semicolons (;) or commas (,).
View IP addresses or CIDR blocks in an IP address whitelist
Log on to the ApsaraMQ for RocketMQ console. In the left-side navigation pane, click Instances.
In the top navigation bar, select a region, such as China (Hangzhou). On the Instances page, click the name of the instance that you want to manage.
In the left-side navigation pane of the page that appears, click Access Control.
On the Access Control page, click the IP Address Whitelist tab to view the IP addresses or CIDR blocks in the IP address whitelist.
Delete an IP address whitelist
On the Access Control page, click the IP Address Whitelist tab.
In the IP address list, find the IP address or CIDR block that you want to manage and click Delete in the Actions column.
In the Confirm Deletion message, click OK.
Related API operations
You can also call the following API operations to manage IP address whitelists: