> ## Documentation Index
> Fetch the complete documentation index at: https://docs.qumo-deploy.com/llms.txt
> Use this file to discover all available pages before exploring further.

# client.ipAllowlists

> Identity-scoped IP allowlists.

Identity-scoped IP allowlists. Each identity can be restricted to a set of CIDR
ranges; when entries are present, requests made with that identity's API key from
outside the configured ranges are rejected with 403. Direct (non-identity) API
keys are covered by apiKeys.\*IPAllowlist. See ADR 0022.

Reach it as `client.ipAllowlists` on a [`QumoClient`](/sdk/reference/client#qumoclient).

### list

```ts theme={null}
list(projectId: string, identityId: string): Promise<IPAllowlist[]>
```

Lists an identity's IP allowlist entries.

Types: [`IPAllowlist`](/sdk/reference/types#ipallowlist)

### create

```ts theme={null}
create(projectId: string, identityId: string, cidr: string, label: string): Promise<IPAllowlist>
```

Restricts an identity to a CIDR range; once any entry exists, other addresses are refused.

Types: [`IPAllowlist`](/sdk/reference/types#ipallowlist)

### delete

```ts theme={null}
delete(projectId: string, identityId: string, allowlistId: string): Promise<void>
```

Removes one IP allowlist entry from an identity.
