Network Security

IP Whitelisting

Secure your perimeter by registering authorized calling systems.

Configuration Portal

Range-based IP Configuration

Range Mode

Selecting Range allows the FI to register a start IP and end IP when an outbound block needs to be allowlisted together.

Range Input

The user enters both Range Start and Range End before submitting the configuration request.

Configure / Cancel

Configure saves the IP range and returns to the network listing, while Cancel exits the modal without saving.

Manual IP Configuration

Manual Mode

Selecting Manual lets the FI enter a public IP address directly for explicit allowlist registration.

Add More

Add More inserts another entry row so multiple outbound IPs can be configured in the same submission flow.

Configure / Cancel

Configure saves the manual IP entry and returns to the IP list, while Cancel closes the pop-up without applying changes.

Domain-based IP Configuration

Domain Mode

Selecting Domain allows the FI to register a domain-based endpoint instead of manually typing a raw IP address.

Validation

If the required domain field is empty, the form shows an inline validation message before submission can continue.

Next Result

After a successful domain configuration, the next visible state is the updated whitelisting view showing the registered network source.

Field Definition

01
IP Range / IP Address / Domain

Enter a range start and end, a single public IP manually, or an approved domain name depending on the selected mode.

02
Selection Mode

Choose whether the network source will be registered using Range, Manual, or Domain mode.

03
Submission Action

Use Configure to save the network source or Cancel to discard the current entry and return to the previous screen.

Security Protocol: Unauthorized IPs are rejected at the platform edge before reaching any API logic. Ensure all IPs are registered 24 hours prior to cutover.

Change Management Flow

1. Assessment

Identify all systems (Gateway, API proxy, CBS) that will initiate requests.

2. Registration

Enter the CIDR ranges in the POEMS technical configuration tab.

3. Validation

Perform a health-check call from the registered IP to verify allowlist propagation.