# Allow-listing for Redox

Your organization may choose to allow-list for Redox based on your own security practices. [Learn about allow-listing](https://techgenix.com/allowlisting-benefits/).

If you choose to allow-list, we recommend that your organization allow-list the following:

| **Platform host** | **Region** | **IP range list** |
| --- | --- | --- |
| Amazon Web Services (AWS) | `us-east-1` `ca-central-1`  (in addition to the U.S. region; for Canada users only) | `AMAZON` and `EC2` [View the AWS IP address range list](https://ip-ranges.amazonaws.com/ip-ranges.json). Bonus: [Explore filters and other tools](https://docs.aws.amazon.com/vpc/latest/userguide/aws-ip-ranges.html) for manipulating the IP address range file. |

Redox’s outbound IPs are assigned by AWS. _Any updates to our network architecture changes our outbound IPs_, including changes to our Virtual Private Cloud (VPC). [Learn more about VPC]( https://aws.amazon.com/vpc/).

We may provide updates or additions for IPs or regions you should allow-list.

> **Historical context for AWS users**
>
> Our migration to AWS Elastic Kubernetes Service (EKS) changed the outbound IPs in 2022, which broke organizations that allow-listed our specific outbound IPs. 
>
> As we expand to more regions, you may need to allow-list new inbound IP addresses or regions for connections within those regions.
