Skip to content

How to Allowlist the IP Addresses and Other Related Resources


To allowlist the product components correctly, it is necessary to perform the following steps:

  1. Determine the Scale Unit name
  2. Allowlist IP addresses of SAP Cloud for Customer Azure productive landscape for corresponding Scale Unit
  3. Allowlist the CDNs

 

Determine the Scale Unit name

To determine the Scale Unit (SU) name, do the following actions:

  1. Download determine_su.zip and extract the su.bat file from it
  2. Launch su.bat
  3. In the opened window, enter tenant name in format “my######.crm.ondemand.com”
  4. The tenant name will be displayed as follows:

 

In provided example Scale Unit name is “fratest“

 


 

Allowlist IP addresses of SAP Cloud for Customer Azure productive landscape for corresponding Scale Unit

Once you find your Scale Unit name, you can find the IP address for allowlisting that corresponds to your Scale Unit in the following table:

Productive landscape (IP Addresses)

Scale Unit (s) name Production Landscape IP ranges
WDC
• WDCPROD01
• WDCPROD21
• WDCTEST01

• 40.89.246.90/31
• 20.88.108.220/31
FRA
• FRAPROD01
• FRAPROD02
• FRAPROD03
• FRAPROD04
• FRAPROD05
• FRAPROD21
• FRATEST01
• FRATEST21

• 20.79.101.104/30
• 20.113.192.54/31
PER
• PERPROD01
• PERPROD21
• PERTEST01

• 40.115.90.12/31
• 20.53.187.192/31

 


 

Allowlist the CDNs

The CDNs are the same for all Scale Units, so you may use the list of CDNs below to allowlist the corresponding CDNs:

Add-In CDNs

  • maxcdn.bootstrapcdn.com
  • code.jquery.com
  • cdnjs.cloudflare.com
  • appsforoffice.microsoft.com
  • unpkg.com
  • cdnjs.cloudflare.com

 

Server-Side Sync CDNs

  • cdnjs.cloudflare.com
  • fonts.googleapis.com
  • maxcdn.bootstrapcdn.com
  • cdn.jsdelivr.net
  • ajax.googleapis.com

 

Telemetry CDN

  • az416426.vo.msecnd.net

 

OAuth CDNs

  • https://login.windows.net
  • https://outlook.office365.com

 

Other CDNs

  • https://invisiblesolutions.com
  • https://appsforoffice.microsoft.com/lib/1.1/hosted/office.js
  • https//az416426.vo.msecnd.net/scripts/a/ai.0.js
  • (customer’s tenant URL)
  • Customer EWS URL and JSON metadata URL’s in case of on-prem Exchange