Allow a trusted remote database connection
Allowlist a specific external host only when an application genuinely needs remote access.
Where Tools → Databases → Remote Database Access
Before you start
- Obtain the connecting system’s fixed public IP and authorisation for the connection.
- Ask support which hostname, port, encryption and firewall rules apply. This screen alone does not configure the whole connection.
Steps
-
1
Open Remote Database Access and review existing hosts.
-
2
Enter the exact authorised IP or hostname in Host. Avoid the % wildcard, which can permit a much broader set of sources.
-
3
Click Add Host only when the scope is correct. The connecting application still needs a valid database user with access to the correct database.
-
4
Configure the external client with the provider’s secure connection settings. Remove the allowlist entry when the integration no longer needs it.
-
5
Add a descriptive Comment identifying the application or owner.
Host defines the permitted connection source; avoid broad wildcards.
Check it worked
- Test from the authorised system and confirm it can access only the intended database.
- For failure, check its actual egress IP, credentials, grants, firewall and encryption settings.