If your organisation restricts access to Salesforce Connected Apps using IP allowlists, you can configure Cognism to use static IP addresses.
This allows Salesforce to accept API requests from Cognism while maintaining your organisation's security policies.
Note: This configuration is only required if your organisation enforces IP restrictions on Connected Apps. Most Salesforce integrations do not require this setup.
Before you begin
Before configuring IP restrictions, ensure that:
- The Salesforce integration has been configured.
- You have Salesforce Administrator permissions.
- Your organisation requires IP allowlisting for Connected Apps.
- You have obtained Cognism's static IP addresses from your Customer Success Manager or the Cognism Support team.
Configure IP restrictions
Step 1 – Connect the Cognism application
- In Cognism, go to Settings > Integrations.
- Select Salesforce.
- Connect the Salesforce integration if it has not already been configured.
- Complete the Salesforce authorisation process.
The Cognism Connected App is installed in Salesforce during the integration process.
Step 2 – Enable IP enforcement
- In Salesforce, open Setup.
- Search for Connected Apps.
- Select Manage Connected Apps.
- Open Cognism Chrome.
- Click Edit Policies.
- Under IP Relaxation, select Enforce IP Restrictions.
Save your changes.
Note: The Connected App is named Cognism Chrome and is used by all Cognism products, including the Legacy web application.
Step 3 – Enable session-level IP validation
- In Salesforce, open Setup.
- Search for Session Settings.
- Enable Enforce login IP ranges on every request.
- Save your changes.
This ensures Salesforce validates the IP address for every API request made by Cognism.
Step 4 – Add Cognism's IP addresses
- Open Setup.
- Go to Users > Profiles.
- Select the profile used by your Salesforce users or integration account.
- Under Login IP Ranges, click New.
- Enter each Cognism static IP address.
- Save your changes.
Repeat this for any additional profiles that require access.
Verify the configuration
After completing the configuration:
- Users should be able to export records successfully.
- CRM Enrichment and Data Import should continue to operate normally.
- Salesforce should no longer reject requests because of IP restrictions.
Troubleshooting
Exports fail after enabling IP restrictions
Verify that:
- All Cognism static IP addresses have been added.
- The correct Salesforce profiles have access to those IP ranges.
- IP restrictions are enabled on the Cognism Connected App.
- Session-level IP enforcement is configured correctly.
Users can connect, but exports fail
This usually indicates that Salesforce validates login successfully but rejects API requests.
Check that Enforce login IP ranges on every request is enabled in Salesforce Session Settings.
Do I need to configure static IP addresses?
Only if your organisation requires IP allowlisting for Connected Apps.
If Salesforce does not enforce IP restrictions, no additional configuration is necessary.
Obtain Cognism static IP addresses
For security reasons, Cognism's static IP addresses are not published publicly.
If you need them, contact:
- Your Customer Success Manager, or
- Cognism Support.