Connectivity architecture in Azure Database for PostgreSQL
This article explains the Azure Database for PostgreSQL connectivity architecture as well as how the traffic is directed to your Azure Database for PostgreSQL database instance from clients both within and outside Azure.
Connection to your Azure Database for PostgreSQL is established through a gateway that is responsible for routing incoming connections to the physical location of your server in our clusters. The following diagram illustrates the traffic flow.
As client connect to the database, they get a connection string which connects to the gateway. This gateway has a public IP address that listens to port 5432. Inside the database cluster traffic is forwarded to appropriate Azure Database for PostgreSQL. Therefore, in order to connect to your server, such as from corporate networks, it is necessary to open up the client side firewall to allow outbound traffic to be able to reach our gateways. Below you can find a complete list of the IP addresses used by our gateways per region.
Azure Database for PostgreSQL gateway IP addresses
The following table lists the primary and secondary IPs of the Azure Database for PostgreSQL gateway for all data regions. The primary IP address is the current IP address of the gateway and the second IP address is a failover IP address in case of failure of the primary. As mentioned, customers should allow outbound to both the IP addresses. The second IP address does not listen in on any services until it is activated by Azure Database for PostgreSQL to accept connections.
|Region Name||Primary IP Address||Secondary IP Address|
|Australia South East||220.127.116.11||18.104.22.168|
|China East 1||22.214.171.124|
|China East 2||126.96.36.199|
|China North 1||188.8.131.52|
|China North 2||184.108.40.206|
|East US 1||220.127.116.11||18.104.22.168|
|East US 2||22.214.171.124||126.96.36.199 *|
|North Central US||188.8.131.52||184.108.40.206|
|South Central US||220.127.116.11||18.104.22.168|
|South East Asia||22.214.171.124||126.96.36.199|
|West US 1||188.8.131.52||184.108.40.206|
|West US 2||220.127.116.11|
East US 2 has also a tertiary IP address of