The IP address that's hitting our ALB is not from Jotform's list if IP addresses to whitelist

  • Sidekick_Solutions
    Asked on April 23, 2024 at 2:19 PM

    I am attempting to use the Webhooks Integration to send form submissions to our listening endpoint. We took the time to whitelist all your CIDR ranges as outlined in your help page: https://www.jotform.com/help/145-whitelisting-jotform-ip-addresses-and-domains/

    However, the IP that we are seeing hitting our ALB is "44.199.244.199:22554" which is not from your list. Also, we are receiving a header indicating it is coming from a Slackbot.


    Is there a reason that your Webhook requests are not coming from your list of CIDR ranges? Is there any other information you can help me with this?

  • Mike_G JotForm Support
    Replied on April 23, 2024 at 4:21 PM

    Hi Jessie,

    Thanks for reaching out to us for help. I understand the issue, but I’ll need a bit of time to look into this. I’ll get back to you as soon as I can.

    In the meantime, let us know if you have any other questions.

  • Mike_G JotForm Support
    Replied on April 24, 2024 at 5:28 PM

    Hi Jessie,

    Thanks for your patience and understanding, we appreciate it. We have tested the issue by using webhook to send data into a database and our tests picked up the following server IP addresses:

    • 34.67.100.206
    • 35.232.36.154

    Can you try if it would give you the same result after you remove the restrictions and allow any IP to access your webhook? You can also run through your codes to check if the IP address that's hitting your ALB is coming from a different event or request. And, you can also check the possibility of whitelisting by domain instead of IP address.

    Give it a try and let us know if you have any other questions.

  • Sidekick_Solutions
    Replied on April 26, 2024 at 12:50 PM

    Hello Mike,

    We do not have the option to open our ALB to all IPs, nor should any other service be hitting the endpoint in question, as it was created specifically for receiving requests from Jotform Webhooks.

    We double checked the list of IP addresses you sent in your response and see that neither of those match the list of CIDR ranges listed in your official whitelist help documentation.

    • 152.160.0.0/16
    • 23.251.253.0/26
    • 38.153.9.0/24
    • 38.152.248.0/24
    • 212.47.85.0/24

    Could you please verify the official JotForm IP Whitelist CIDR ranges?


  • Mike_G JotForm Support
    Replied on April 26, 2024 at 1:15 PM

    Hi Jessie,

    Thanks for getting back to us. I created a ticket and forwarded it to our Developers so they can confirm. As soon as we hear back from them, we’ll update you here on this thread.

    In the meantime, let us know if you have any other questions.


 
Your Answer