Saas Ai Webflow Website Datalog Template
Built for Fortanix DSM trusted CIDR restrictions and cloud applications that access cryptographic keys, certificates, and secrets. QuotaGuard gives customer-controlled application requests two stable public IPv4 sources when native cloud egress changes.

QuotaGuard routes customer-controlled Fortanix Data Security Manager requests through the two fixed public IPv4 addresses assigned to its subscription. Add both addresses as individual /32 CIDRs on the Fortanix application's Allowed IP-addresses field so either healthy QuotaGuard route can satisfy the source restriction. QuotaGuard has provided static-IP proxy service since 2013.

  • Application-Level CIDR Control: Fortanix DSM can restrict one application to trusted IPv4 or IPv6 CIDRs. Register both individual QuotaGuard addresses so changing native cloud egress does not break the source check.
  • Authentication Preserved: IP whitelisting is an additional Fortanix restriction. The application's API key, certificate, trusted CA, Google service account, JSON Web Token, or AWS IAM method still authenticates the request and Fortanix authorization still controls its permissions.
  • Correct Policy Scope: The application's Allowed IP-addresses field is separate from Fortanix's system-level IP Policy. Use the application setting for a targeted workload and reserve system policy changes for administrators who need broader principal and API-class rules.
  • Production-Grade Reliability: Each subscription receives two load-balanced static IPv4 addresses with health checks and automated failover. Keep both in the applicable Fortanix CIDR rule so either healthy source remains accepted.
  • Encrypted Destination Session: The application's HTTPS session to Fortanix stays encrypted and QuotaGuard does not decrypt its payload. QuotaGuard Shield additionally encrypts the customer-to-proxy hop when required by the customer's data or network policy.
  • Customer-Controlled Traffic: The path applies to server-side HTTP or HTTPS clients that can use an authenticated proxy. It does not change browser traffic, Fortanix-originated service connections, or third-party calls outside the customer's control.

Fortanix control note: Fortanix says application IP whitelisting is an additional authentication restriction and should not be relied on as sufficient security by itself. Keep the configured authentication method and authorization controls in place.

Comparing platforms? See the complete guide to static IPs on any PaaS platform.

Reliability Engineered for the Modern Cloud

For over a decade, QuotaGuard has provided reliable, high-performance static IP and proxy solutions for cloud environments like Heroku, Kubernetes, and AWS.

Get the fixed identity and security your application needs today.