Global Rail / Console docs
Admin

IP allowlist

Restrict Console access to specific egress IPs.

Under Settings → Network, add CIDR ranges that are allowed to reach the Console for this tenant. Anything outside the allowlist gets a hard 403, even with valid credentials.