Restricting App Access by IP Address
Limit who can reach your Knack app by allowing access only from specific, trusted IP addresses
What you'll learn:
- What IP restrictions do and when they're useful
- Which Knack plans include this feature
- What to check before turning it on, so you don't lock yourself out
What Are IP Restrictions?
IP Restrictions let you control access to your app at the network level, rather than relying on user login alone. When enabled, only requests coming from an IP address on your approved list will be able to reach your app — everyone else is blocked before they ever see a login screen.
This is especially useful if you're:
- Building an internal tool that should only be accessible from your office network
- Supporting a remote team that connects through a company VPN with a known IP
- Adding an extra layer of protection on top of your existing user roles and permissions
Note: IP Restrictions control network-level access. They work alongside — not instead of — your app's user roles and permissions, which still govern what a logged-in user can see and do.
Plan Requirements
Note: IP Restrictions are available on Pro and higher-tier Knack plans. If you don't see this option in your app settings, check your current plan under Account Settings.
Setting Up IP Restrictions
- Navigate to your app's Security settings.
- Enable the IP Restrictions setting.
- Add the IP address or range you want to allow access from.
- Save your changes.
Warning: Before saving, make sure the IP address you're adding includes your own current network. If you enable this setting without allowing your own IP, you could lock yourself — and your team — out of the app. If this happens, you'll need to contact Knack support to regain access.
Tip: If your team works from multiple locations or doesn't have a static IP (for example, connecting from home networks), consider whether a VPN with a fixed IP is a better fit than trying to list every possible address.
Updated about 5 hours ago

