# WSE Manager: how to restrict access by ip ?

**URL:** <https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309>\
**Category:** Wowza Streaming Engine\
**Created:** [April 23, 2014, 4:02pm UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309 "2014-04-23T16:02:02Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![system](https://sea2.discourse-cdn.com/flex002/user_avatar/community.wowza.com/system/32/447_2.png) [@system](https://community.wowza.com/u/system)\
**Post date:** [April 23, 2014, 4:02pm UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/1 "2014-04-23T16:02:02Z")

</div>

Is it possible to whitelist a list of ips who get access to the manager web interface, or is the firewall the only option ? Also, is there a way to auto login (e.g. [http://user:pass@server:8088](http://user:pass@server:8088)), use ldap integration, … ?

---

<div class="post-metadata">

**Author:** ![sal\_jefferson](https://avatars.discourse-cdn.com/v4/letter/s/6de8d8/32.png) [@sal\_jefferson](https://community.wowza.com/u/sal_jefferson)\
**Post date:** [April 23, 2014, 10:06am UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/2 "2014-04-23T10:06:40Z")

</div>

Hi Florent, please see this guide:

[How to connect to remote Streaming Engine installations (whitelist)](https://www.wowza.com/docs/how-to-connect-to-remote-streaming-engine-installations-whitelist)

Salvadore

---

<div class="post-metadata">

**Author:** ![Florent\_Thiery](https://avatars.discourse-cdn.com/v4/letter/f/dfb087/32.png) [@Florent\_Thiery](https://community.wowza.com/u/Florent_Thiery)\
**Post date:** [April 23, 2014, 4:30pm UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/3 "2014-04-23T16:30:49Z")

</div>

Thanks, i saw this, but it’s just moving the problem somewhere else: if i understand correctly, the whitelist only applies to the connection between the manager and the server, not between the client and the manager. I understand that moving the manager behind a firewall will do the trick, but here i’m hoping to restrict per ip directly on the manager interface.

---

<div class="post-metadata">

**Author:** ![Florent\_Thiery](https://avatars.discourse-cdn.com/v4/letter/f/dfb087/32.png) [@Florent\_Thiery](https://community.wowza.com/u/Florent_Thiery)\
**Post date:** [April 23, 2014, 5:09pm UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/4 "2014-04-23T17:09:32Z")

</div>

Of course, but someone could bruteforce it, DDoS, or other tricks (SQL injection, CSRF, … who knows). Sounds like good practice not to let anyone access the admin login interface, a bit like an ssh server… Especially on a publically accessible server 🙂

Anyway, firewall is the way to go then. Thank you anyway.

---

<div class="post-metadata">

**Author:** ![sal\_jefferson](https://avatars.discourse-cdn.com/v4/letter/s/6de8d8/32.png) [@sal\_jefferson](https://community.wowza.com/u/sal_jefferson)\
**Post date:** [April 23, 2014, 11:06am UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/5 "2014-04-23T11:06:05Z")

</div>

Florent, forgive me if I do not understand what you are trying to do. But there is a level of security via “Users”. If someone tries to access the Manager they will need to log in with a user name and password. If they do not have an account, they will not be able to access the Manager interface.

Salvadore

---

<div class="post-metadata">

**Author:** ![sal\_jefferson](https://avatars.discourse-cdn.com/v4/letter/s/6de8d8/32.png) [@sal\_jefferson](https://community.wowza.com/u/sal_jefferson)\
**Post date:** [April 23, 2014, 11:25am UTC](https://community.wowza.com/t/wse-manager-how-to-restrict-access-by-ip/309/6 "2014-04-23T11:25:41Z")

</div>

You are right Florent, there is no way to do this with Wowza, a firewall to restrict certain IPs is the answer.

Salvadore
