> For the complete documentation index, see [llms.txt](https://help.aikido.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.aikido.dev/docs/docs-ja/penetorshontesuto/prepare-a-pentest/ip-addresses-for-pentest.md).

# ペネトスト用IPアドレス

Aikido は、専用の IP アドレスとリクエストヘッダーを使用して、あなたの環境に対するペネトレーションテストを実施します。接続の問題、レート制限、またはセキュリティブロックを防ぐため、これらの IP とヘッダーをファイアウォールの許可リスト、またはその他のセキュリティソフトウェアに追加してください。

## IP アドレス

### **EU ベースの IP アドレス**

* 34.252.102.184
* 52.48.122.82
* 52.49.182.62
* 52.209.168.11
* 52.210.210.125
* 54.76.103.212
* 54.194.175.200
* 54.217.255.121

### **US ベースの IP アドレス**

* 3.226.27.188
* 34.237.95.50
* 44.209.154.183
* 52.204.120.162
* 54.80.175.207
* 54.227.161.94
* 98.88.145.68
* 98.91.68.215

### **AU ベースの IP アドレス**

* 13.237.12.233
* 13.55.70.235
* 15.134.62.222
* 15.135.1.99
* 3.105.20.219
* 3.24.155.132
* 52.64.105.187
* 54.253.33.136

### **オプションの IP アドレス**

サポートとのトラブルシューティングに使用されます。

* 79.127.239.171

## リクエストヘッダー

Aikido のペネトレーションテストからのすべてのリクエストには、以下の値のいずれかが `User-Agent` ヘッダーに含まれます。これらは、SIEM または WAF のリクエストログでペネトレーションテストのリクエストを識別するために使用できます。

* `aikido-pentest-agent`
* `aikido-pentest-agent/1.0 (Agent <AGENT_UUID>)`

サードパーティプロバイダーでIPアドレスを許可リストに登録する方法については、以下のリソースを参照してください:

* [Cloudflare WAF](https://developers.cloudflare.com/waf/custom-rules/use-cases/allow-traffic-from-ips-in-allowlist/)
  * Cloudflare Turnstile は、特定のクライアント IP アドレスの許可リスト登録をサポートしていません。必要であれば [Aikido のスキャン トラフィックに対して Turnstile をバイパスするには、アプリケーションコードで行う必要があります。](https://developers.cloudflare.com/turnstile/tutorials/conditionally-enforcing-turnstile/) 両方の条件が真の場合にのみバイパスすることを推奨します:
    1. リクエストが Aikido の IP 範囲から発信されている
    2. リクエストに次が含まれている `aikido` 上記で説明したヘッダー内の User Agent
* [Azure WAF](https://learn.microsoft.com/en-us/azure/web-application-firewall/ag/custom-waf-rules-overview)
* [AWS WAF](https://docs.aws.amazon.com/waf/latest/developerguide/waf-rule-statement-type-ipset-match.html).
  * Application Load Balancer または CloudFront の背後にある WAF では、 [WAF は、次の最後の IP アドレスを確認する必要があります: `X-Forwarded-For` ヘッダー](https://docs.aws.amazon.com/waf/latest/developerguide/waf-rule-statement-forwarded-ip-address.html).
* [Vercel WAF](https://vercel.com/docs/vercel-firewall/vercel-waf/custom-rules)
  * 次を使用してください [「bypass」アクション](https://vercel.com/docs/vercel-firewall/firewall-concepts#bypass) 信頼できる IP 向け

{% hint style="info" %}
[IP アドレスのリストは JSON 配列としても利用できます](https://aikido.help/ips/)
{% endhint %}

## 内部アプリケーションのテスト

アプリケーションが、公開インターネットからの受信トラフィックを受け付けられない厳密なプライベートネットワーク、VPN、またはイントラネット上でホストされている場合は、 [内部アプリケーション向け Aikido Broker](/docs/docs-ja/miscellaneous-info/aikido-broker-for-internal-applications.md)

{% hint style="info" %}
Broker を使用できます。これには、インフラストラクチャ内にエージェントをインストールする必要があります。標準的な IP 許可リスト化ができない場合にのみ、これを推奨します。
{% endhint %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://help.aikido.dev/docs/docs-ja/penetorshontesuto/prepare-a-pentest/ip-addresses-for-pentest.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
