All Products
Document Center

ApsaraDB for OceanBase:Create a whitelist group

Last Updated:May 18, 2023

This topic describes how to create a whitelist group. After you add an IP address to a whitelist, the client with that IP address can access the tenant. You may create and edit whitelist groups.


ApsaraDB for OceanBase supports whitelist groups. By default, ApsaraDB for OceanBase has one whitelist group that cannot be deleted. You can create up to 40 whitelists and up to 5 whitelist groups. The whitelist group names must be unique, and none of the groups can be empty.


  1. In the left-side navigation pane, click Instances and select the destination cluster instance to go to the Cluster Instance Workspace page.

  2. In the left-side navigation pane, click Security Settings.

  3. On the Whitelist tab, click Add Whitelist Group.


    To view the help information about how to add a whitelist group, click How can I configure a whitelist?.

    Whitelist group
  4. Specify Group Name and IP Address.1



    Group Name

    The group name must be 2 to 32 characters in length, start with a lowercase letter, end with a lowercase letter or digit, and contain only lowercase letters, digits, and underscores (_).

    IP Address

    • You can enter an IP address, for example,, or an IP address range, for example,

    • Separate multiple IP addresses with commas (,), for example,,

    • indicates that no access is allowed from any IP address.

    • indicates that accesses from all IP addresses are allowed.

    • Changes to the whitelist of the cluster instance take effect for all tenants.

    • You can create up to 40 whitelists.

  5. Click OK to complete the whitelist settings.

  6. After a whitelist is added, click the edit icon next to the group to add or remove whitelists.