Restrict feed access to google's IPs

Hi!

I am configuring a feed on Chronicle SIEM to obtain Azure Activity Logs following this guide: Ingest Azure Activity Logs  |  Chronicle  |  Google Cloud

As I am doing it using 'shared key', I would like to restrict the access to that Blob (in Azure) so that only my Chronicle instance has access to that info.

That's why I need to know what IP range a regional instance in Europe can use.

I have seen a long list of IPs belonging to Google Cloud, but I would need to narrow it down to more than the whole Google Cloud (to the IP range that my instance can get to use, if possible).

Thanks in advance!

 

 

 

 

 

Solved Solved
1 1 234
1 ACCEPTED SOLUTION

Hi Mireia,

Pease open a support case, so we can verify whitelisting has been enabled for your feeds. If so, we can share the small IP space for you to whitelist.

Thanks!

View solution in original post

1 REPLY 1

Hi Mireia,

Pease open a support case, so we can verify whitelisting has been enabled for your feeds. If so, we can share the small IP space for you to whitelist.

Thanks!