08-29-2021 08:43 AM
Hi,
I configured IP Access Management in Intersight. I limited it to 1 ip address.
I was surprised when I tested login to Intersight from not allowed/trusted ip address.
Window showed this message:
Your IP address 'x.x.x.x' is not in the list of trusted IP addresses that are allowed access to the selected account. As an Account Administrator or User Access Administrator you can add your IP address to the list of trusted IP ranges to unlock access to Intersight.
After checking checkbox "I acknowledge adding my ip address to the Trusted ip address list" I was able to login.
Makes this sense for anybody?
Can I really limit access to Intersight to only Trusted ip address list?
Thank you
Richard
Solved! Go to Solution.
09-07-2021 11:07 AM
09-07-2021 11:07 AM
09-07-2021 11:48 AM
Hi Jacob,
thank you for your response.
I understand now that this behavior is by design and you had your reasons for this implementation.
I would still prefer if there was no way to add trusted ip by admin trying to log in from anywhere.
Because with this implementation we are forced to use MFA for admin login (if we want to have some security for DC workloads). MFA does not suit everybody.
If this option to add trusted ip by admin from anywhere was not here then, in case of ip lockout, user should open TAC case. This works for e.g. MFA lockout.
So I close my question voting for disabling option to add trusted ip by admin from anywhere,
Kind regards,
Richard
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide