For the server to server calls (i.e. web service calls) you may need to have a fixed IP address list for greenID services. This is usually for one of two reasons:
- you need to open firewalls up for servers to make outbound requests; or
- you have complex routing systems that are IP address based.
The main greenID service endpoints essentially have no fixed IP address, so we have created "fixed IP" endpoints which are denoted with a "-fip" in the name. These endpoints have been configured to always return one of a fixed set of around 200-300 IP addresses.
Before resorting to using fixed IP addresses, please consider if hostname-based firewalling is an option.
The endpoint you need to use depends on whether you also use client certificates. The table below indicates what endpoint should be used when. The table uses the Australian site as an example but the pattern holds true for all other regions (including test sites).
Endpoint | Customer Configuration | |
---|---|---|
Uses client certificates (i.e. MSSL) | Requires Fixed IP addresses | |
au.vixverify.com | no | no |
au-fip.vixverify.com | no | yes |
au.clientcert.vixverify.com | yes | no |
au-fip.clientcert.vixverify.com | yes | yes |
The list of IP addresses can change from time to time. All use the standard https port 443. Download CAC-20180326.csv for the list of IP addresses current at .