Avanan has updated the static source IP addresses used for forwarding security events to SIEM and SOAR platforms in select regions.

As part of ongoing efforts to optimize security event delivery and infrastructure reliability, the static IP addresses from which events are sent have changed for a few regional data centers. These updates apply only to UAE, UK, and India, and customers in these regions should adjust their network configurations accordingly to ensure uninterrupted integration with their SIEM or SOAR platforms.

The updated static IP addresses are:

  • UAE: 51.112.39.93

  • UK: 3.9.211.100

  • India: 15.207.123.24

If your organization uses IP-based firewall rules or event ingestion filtering, it’s important to update these addresses in your allowlists. These changes help improve routing efficiency and enhance the resilience of the event delivery pipeline.

You can find more detailed information about SIEM/SOAR integration in the Avanan Admin Guide.