How to restrict Snowflake access to a specific IP address using Conditional Access
ID: e8f3300b-6ee9-579c-9d6d-83d32fb224e5
STIX ID: report--e8f3300b-6ee9-579c-9d6d-83d32fb224e5
Feed Name: ThreatLocker Blog
This document is a how‑to guide for enforcing IP‑based access controls to Snowflake using Microsoft Entra ID Conditional Access (SAML SSO) alongside Snowflake Network Policies. It details prerequisites (licenses, SAML2 integration, removing local passwords, static IPs), creating Named Locations, building a policy to block sign‑ins outside trusted IPs, validating in report‑only mode, and cautions about non‑SSO connections (JDBC/ODBC/SnowSQL) which require Snowflake Network Policies for full coverage.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
