> For the complete documentation index, see [llms.txt](https://help.aikido.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.aikido.dev/docs/docs-ja/dast-sfesu/allowing-ip-addresses-for-dast-surface-monitoring.md).

# ドメインスキャン用の IP アドレス

Aikido は、ドメインのスキャン（DAST）を実行するために専用の IP アドレスを使用します。接続の問題、レート制限、またはセキュリティブロックを防ぐため、これらの IP をファイアウォールの許可リストまたはその他のセキュリティソフトウェアに追加してください。その後、接続を確認するためにドメインを再スキャンしてください。

AI ペンテスト用の IP アドレスをお探しですか？ こちらに一覧があります： [ペンテスト用 IP アドレス](/docs/docs-ja/penetorshontesuto/prepare-a-pentest/ip-addresses-for-pentest.md).

{% hint style="warning" %}
「URL から OpenAPI を取得」を使用するには、以下も追加する必要があります。 [コードおよびコンテナスキャン用 IP アドレス。](/docs/docs-ja/kdosukyan/miscellaneous/allowing-ip-addresses-for-code-container-scanning.md)
{% endhint %}

**EU ベースの IP アドレス：**

* 3.248.4.169
* 54.76.211.68
* 54.228.156.63
* 54.247.155.164
* 18.200.152.99
* 18.202.99.112

**US ベースの IP アドレス**

* 98.85.190.95
* 52.204.144.1
* 44.209.56.130
* 18.210.114.117
* 35.168.38.209
* 35.173.56.162
* 54.227.161.94
* 44.209.154.183

**ME ベースの IP アドレス**

* 158.252.118.40
* 158.252.52.197
* 40.172.160.56

**AU ベースの IP アドレス**

* 54.66.103.236

**オプションの IP アドレス（サポートによるトラブルシューティングに使用）：**

* 79.127.239.171

#### リクエストヘッダー

Aikido のスキャンから発生するすべての HTTP リクエスト（フロントエンドスキャンを除く）には、特定の User-Agent ヘッダーが含まれます。これは DAST トラフィックの識別や、許可リスト登録の目的に使用できます：

* `User-Agent: aikido-scan-agent/1.0`

サードパーティプロバイダーでIPアドレスを許可リストに登録する方法については、以下のリソースを参照してください:

* [Cloudflare WAF](https://developers.cloudflare.com/waf/custom-rules/use-cases/allow-traffic-from-ips-in-allowlist/)
  * Cloudflare Turnstile は、特定のクライアント IP アドレスの許可リスト登録をサポートしていません。必要であれば [Aikido のスキャン トラフィックに対して Turnstile をバイパスするには、アプリケーションコードで行う必要があります。](https://developers.cloudflare.com/turnstile/tutorials/conditionally-enforcing-turnstile/) 両方の条件が真の場合にのみバイパスすることを推奨します:
    1. リクエストが Aikido の IP 範囲から発信されている
    2. リクエストに次が含まれている `aikido` 上記で説明したヘッダー内の User Agent
* [Azure WAF](https://learn.microsoft.com/en-us/azure/web-application-firewall/ag/custom-waf-rules-overview)
* [AWS WAF](https://docs.aws.amazon.com/waf/latest/developerguide/waf-rule-statement-type-ipset-match.html).
  * Application Load Balancer または CloudFront の背後にある WAF では、 [WAF は、次の最後の IP アドレスを確認する必要があります: `X-Forwarded-For` ヘッダー](https://docs.aws.amazon.com/waf/latest/developerguide/waf-rule-statement-forwarded-ip-address.html).
* [Vercel WAF](https://vercel.com/docs/vercel-firewall/vercel-waf/custom-rules)
  * 次を使用してください [「bypass」アクション](https://vercel.com/docs/vercel-firewall/firewall-concepts#bypass) 信頼できる IP 向け

{% hint style="info" %}
[IP アドレスのリストは JSON 配列としても利用できます](https://aikido.help/ips/)
{% endhint %}

***


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.aikido.dev/docs/docs-ja/dast-sfesu/allowing-ip-addresses-for-dast-surface-monitoring.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
