Manage Grafana Cloud IP allowlists with one API
Keep your firewall automation synchronized with Grafana Cloud through one versioned Allowlist API. A consistent JSON format across services and regions makes allowlists easier to retrieve, parse, and validate.
Choose the scope that matches your environment: global, regional, or per-service. Bring Your Own Cloud (BYOC) regions use regional endpoints because the global endpoint includes only Grafana Cloud-managed regions. Each entry lists the IP addresses to allow and shows whether traffic is going to or coming from Grafana Cloud. This helps you apply the list to the right firewall rules without allowing more access than necessary.
The Allowlist API replaces the existing per-product JSON, text, and DNS sources. If your automation consumes those sources, migrate before January 31, 2027. This isn’t a drop-in URL change because the response format and service names differ. Refer to the linked blog post and documentation for endpoint details, response examples, and migration steps.