Restricting access with IP restrictions

Plan requirement

Subscription Suite Professional or higher, Support Professional or higher
Access Admin

Limiting where agents can sign in from. Effective, and the setting most likely to lock out the person who configured it.

Set it up

  1. Collect every address range agents legitimately use.
  2. Open the security settings in Admin Center.
  3. Add the ranges.
  4. Test from inside and outside before enforcing.
  5. Enable it.

Collect the ranges properly

Offices, the VPN, home workers on fixed addresses, any site abroad. Missing one means those people cannot work the moment you enable it.

This step is the work; the setting itself takes a minute.

Home and mobile working

Most home connections have addresses that change. Unless everybody comes through a VPN, IP restriction and home working do not combine well, and the VPN is the part to sort out first.

Do not lock yourself out

Test from your own connection before enforcing, and know how you would recover. Being unable to reach the setting that locked you out is a specific and avoidable kind of afternoon.

It does not apply to everything

Check how it treats the API and integrations. A restriction that blocks a working integration will present as that integration mysteriously failing.

Customers are not affected

This is about agents signing in, not about people reaching your help centre or submitting tickets. Worth saying, because it is a common worry.

Review it when locations change

A new office, a changed VPN, a provider changing your range. Each breaks it, and the symptom is a colleague who cannot sign in on Monday.

See also

Was this article helpful?

0

Still stuck?

Our support team will take a look with you.

Comments

0 comments

Article is closed for comments.