# Static IP range for Buildkite APIs

**URL:** <https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424>\
**Category:** Features Requests\
**Created:** [April 9, 2019, 3:44am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424 "2019-04-09T03:44:34Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![mtcmorris](https://sea2.discourse-cdn.com/flex016/user_avatar/forum.buildkite.community/mtcmorris/32/506_2.png) [@mtcmorris](https://forum.buildkite.community/u/mtcmorris)\
**Post date:** [April 9, 2019, 3:44am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/1 "2019-04-09T03:44:34Z")

</div>

## What

A publishable range of external IP addresses for Buildkite that isn’t all of Amazon. Eg [Zendesk](https://support.zendesk.com/hc/en-us/articles/203660846-Configuring-your-firewall-for-use-with-Zendesk), [Travis](https://docs.travis-ci.com/user/ip-addresses/), [Github](https://help.github.com/en/articles/about-githubs-ip-addresses) etc.

## Why

Many organisations run egress firewalls that require whitelisting of CIDRs for external communications for security reasons. By having a publishable range of external IPs you make Buildkite palatable to the security engineers in those organisations.

---

<div class="post-metadata">

**Author:** ![anon85971592](https://avatars.discourse-cdn.com/v4/letter/a/dfb087/32.png) [@anon85971592](https://forum.buildkite.community/u/anon85971592)\
**Post date:** [April 9, 2019, 8:58am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/2 "2019-04-09T08:58:27Z")

</div>

👋 Howdy @mtcmorris! Fancy seeing you here!!

Good call on this one. This is something we’ve been discussing internally for aaages. Amazon hasn’t really given us any good tools to address this, but I think that’s about to change.

**[…REDACTED…]**

I’ll do some poking internally and see where we’re up to with it.

---

<div class="post-metadata">

**Author:** ![dnguyen](https://avatars.discourse-cdn.com/v4/letter/d/ed655f/32.png) [@dnguyen](https://forum.buildkite.community/u/dnguyen)\
**Post date:** [May 11, 2020, 3:15am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/3 "2020-05-11T03:15:19Z")

</div>

Hi!

Are there any updates to this?

All webhook notifications are 401ing because I can’t whitelist Buildkite.

---

<div class="post-metadata">

**Author:** ![anon17095254](https://avatars.discourse-cdn.com/v4/letter/a/ac91a4/32.png) [@anon17095254](https://forum.buildkite.community/u/anon17095254)\
**Post date:** [May 12, 2020, 2:19am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/4 "2020-05-12T02:19:06Z")

</div>

Hi @dnguyen,

It’s not documented anywhere yet, but we have an API endpoint here which might help:  
[https://api.buildkite.com/v2/meta](https://api.buildkite.com/v2/meta)

`webhook_ips` is a list of CIDRs which we will send webhooks from. Do you think that will work for you?

Nik

---

<div class="post-metadata">

**Author:** ![dnguyen](https://avatars.discourse-cdn.com/v4/letter/d/ed655f/32.png) [@dnguyen](https://forum.buildkite.community/u/dnguyen)\
**Post date:** [May 12, 2020, 3:22am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/5 "2020-05-12T03:22:55Z")

</div>

Yes it worked! Thank you @anon17095254

---

<div class="post-metadata">

**Author:** ![pda](https://sea2.discourse-cdn.com/flex016/user_avatar/forum.buildkite.community/pda/32/708_2.png) [@pda](https://forum.buildkite.community/u/pda)\
**Post date:** [April 13, 2021, 3:32am UTC](https://forum.buildkite.community/t/static-ip-range-for-buildkite-apis/424/6 "2021-04-13T03:32:54Z")

</div>

FYI (@dnguyen and anybody else interested):

The IP addresses returned from [https://api.buildkite.com/v2/meta](https://api.buildkite.com/v2/meta) have changed as per [New outbound IP addresses](https://buildkite.com/changelog/118-new-outbound-ip-addresses)

We’ll be switching to the new IP addresses in the coming two weeks.
