Reserving floating IPs from a custom authorized CIDR
BYOIP for IPv4 is a beta feature that is available for evaluation and testing purposes to select customers. Access is restricted to allowlisted accounts.
You can reserve a floating IP address from a custom authorized CIDR instead of from IBM-managed IP pools. This setup allows you to use your own publicly routable IP addresses as floating IPs that are attached to virtual network interfaces or public gateways in your VPC.
Before you begin
- You must have a custom authorized CIDR that is provisioned and in
stablestatus. - Floating IPs from a custom authorized CIDR can only be attached to a virtual network interface (VNI) or a public gateway. They cannot be attached to legacy network interfaces.
Reserving a floating IP from a custom authorized CIDR in the console
To reserve a floating IP from a custom authorized CIDR in the IBM Cloud console:
-
From the IBM Cloud console, select the Navigation menu icon
> Infrastructure
> Network > Floating IPs.
-
Click Reserve.
-
In the Location section, select the zone where you want to reserve the floating IP.
-
In the Details section, complete the following fields:
- Name: Enter a unique name for the floating IP using lowercase alphanumeric characters and hyphens only (without spaces).
- Resource group: Select the resource group for the floating IP.
- Tags (optional): Add tags to help organize your resources. You can add more tags later.
- Access management tags (optional): Add access management tags in
key:valueformat. For more information, see Controlling access to resources by using tags.
-
In Public address source, select Custom authorized CIDRs.
When you select IBM CIDRs (the default), the system assigns an IP address from IBM-managed pools. When you select Custom authorized CIDRs, you allocate an IP from your own authorized range.
-
From the Authorized CIDR menu, select the custom authorized CIDR that you want to allocate the IP from.
Only authorized CIDRs that are in
stablestatus and associated with the selected zone are available. -
(Optional) In the Binding section, bind the floating IP to a resource:
- Resource: Select an instance, server, or virtual network interface from the dropdown.
- Network interface: After you select a resource, choose the specific network interface to bind to.
-
Review the Total estimated cost displayed at the bottom of the panel. VPC egress public bandwidth charges apply to data traffic transferred through the floating IP.
-
Click Reserve.
After the floating IP is reserved, it appears in the Floating IPs list with the address from your custom authorized CIDR. The Status column shows Bound or Unbound depending on whether you selected a binding target.
Creating a floating IP from a custom authorized CIDR from the CLI
Before you begin, set up your CLI environment.
To reserve a floating IP from a custom authorized CIDR, use the --address flag to specify an unallocated IP address from your authorized CIDR:
ibmcloud is floating-ip-reserve FLOATING_IP_NAME (--zone ZONE_NAME | --nic TARGET_INTERFACE [--in TARGET_INSTANCE | --bm TARGET_BARE_METAL_SERVER] | --vni VNI | --reset-target) [--address ADDRESS] [--resource-group-id RESOURCE_GROUP_ID | --resource-group-name RESOURCE_GROUP_NAME] [--output JSON] [-q, --quiet]
For example, to reserve a floating IP with a specific address from your authorized CIDR:
ibmcloud is floating-ip-reserve my-byoip-fip --address 46.16.186.112 --zone us-south-2
Where:
FLOATING_IP_NAME- The name for the floating IP.
--address- An unallocated IP address within a custom authorized CIDR in your account. Required if neither
--nicnor--zoneis specified. --zone- Name of the target zone.
--nic- The ID or name of the network interface to be bound.
--vni- ID or name of the virtual network interface.
To bind the floating IP to a virtual network interface at creation time:
ibmcloud is floating-ip-reserve my-byoip-fip --address 46.16.186.112 --vni vni2
To list floating IPs filtered by a specific profile:
ibmcloud is floating-ips --profile-name byoip-ipv4
The address must be an unallocated IP within a custom authorized CIDR in your account. Floating IPs from a custom authorized CIDR can be attached only to a VNI or a public gateway.
Creating a floating IP from a custom authorized CIDR with the API
Before you begin, set up your API environment.
To reserve a floating IP from a custom authorized CIDR, specify the address field in the request body:
curl -sX POST "$vpc_api_endpoint/v1/floating_ips?version=$api_version&generation=2" \
-H "Authorization: Bearer $iam_token" \
-H "Content-Type: application/json" \
-d '{
"address": "192.168.0.4",
"name": "my-byoip-fip",
"zone": {
"name": "us-south-2"
}
}'
To reserve and bind to a virtual network interface in a single request:
curl -sX POST "$vpc_api_endpoint/v1/floating_ips?version=$api_version&generation=2" \
-H "Authorization: Bearer $iam_token" \
-H "Content-Type: application/json" \
-d '{
"address": "192.168.0.4",
"name": "my-byoip-fip",
"target": {
"id": "69e55145-cc7d-4d8e-9e1f-cc3fb60b1793"
}
}'
The address must be an unallocated IP within a custom authorized CIDR in your account.