Updated on 2024-10-15 GMT+08:00

Managing the Nacos Engine Whitelist

The following describes how to manage whitelists of a Nacos engine to allow access only from whitelisted IP addresses.

If no whitelists are added to the engine whitelist or the whitelist function is disabled, all IP addresses that can communicate with the VPC can access the engine.

The owner of a shared VPC can add the VPC subnet to the whitelist to allow other tenants in the VPC to access the engine.

Setting a Whitelist

  1. Log in to CSE.
  2. In the left navigation pane, choose Registry/Configuration Center.
  3. Click the target engine. The details page is displayed.

    You can click an Available engine to go to the Basic Information page.

  4. In the Connection Information area, click . In the Set Access Whitelist dialog box, enter IP Address/Address Segment. Use commas (,) to separate multiple whitelists.

    A maximum of 20 IP addresses/address segments can be added for each engine. IPv4 and IPv6 addresses are supported only in CN East 2. In other regions, only IPv4 addresses are supported.

    • To modify or delete an IP address/address segment, modify or delete it in the displayed dialog box.
    • To add an IP address/address segment, add it in the displayed dialog box.

  5. Click OK. When the engine status changes from Configuring to Available, the whitelist takes effect.