Skip to main content

Syncing permissions on IP Addresses with those from their corresponding Prefix in NetBox

This project has been archived.

The maintainers of this project have marked this project as archived. No new releases are expected.

Project description

netbox-ip-permissions-synchronization

Overview

This plugin allows you to compare and synchronize IP address permissions (tenant assignments and custom permission fields) with their parent prefix in NetBox. It's useful for ensuring consistent permission and tenant assignments across all IP addresses within a prefix.

Features

  • Compare IP address permissions against their parent prefix
  • View tenant and permission field assignments at a glance
  • Synchronize all IP addresses with prefix permissions
  • Automatic detection of mismatched permissions
  • User-friendly interface with color-coded status indicators

Compatibility

Tested with NetBox versions 4.3.7.

Installation

If your NetBox installation uses virtualenv, activate it like this:

source /opt/netbox/venv/bin/activate

Install the plugin from PyPI:

pip install netbox-ip-permissions-synchronization

Or clone this repository, then go to the folder with it and install the plugin:

pip install .

To enable the plugin, add the plugin's name to the PLUGINS list in configuration.py (it's usually located in /opt/netbox/netbox/netbox/) like so:

PLUGINS = [
    'netbox_ip_permissions_synchronization'
]

Don't forget to restart NetBox:

sudo systemctl restart netbox netbox-rq

Usage

Navigate to any Prefix in NetBox and look for the "Sync IP Permissions" button at the top of the page:

The synchronization page will show:

  • Prefix information including tenant and permission assignments
  • IP addresses that need synchronization (highlighted in yellow)
  • IP addresses that are already synchronized (highlighted in green)

Select the IP addresses you want to synchronize using the checkboxes, then click:

  • "Sync All IPs" - Synchronize all IP addresses in the prefix

Custom Fields Required

This plugin requires the following custom fields to be created in NetBox:

  1. tenant_permissions - Multiple objects (Tenant) field to store read-write permission assignments
  2. tenant_permissions_ro - Multiple objects (Tenant) field to store read-only permission assignments

These fields should be applied to both:

  • IPAM > Prefix
  • IPAM > IP Address

How It Works

  1. When you access the sync page for a prefix, the plugin fetches all IP addresses within that prefix
  2. It compares each IP address's tenant and permission fields with the parent prefix
  3. IP addresses with mismatched values are marked for synchronization
  4. You can selectively sync individual IPs or all IPs at once
  5. The sync operation updates:
    • Tenant assignment (if the prefix has a tenant set)
    • tenant_permissions custom field
    • tenant_permissions_ro custom field

Plugin Settings

If you want to override the default values, configure the PLUGINS_CONFIG in your configuration.py:

PLUGINS_CONFIG = {
    'netbox_ip_permissions_synchronization': {
        # Add any future configuration options here
    }
}

Currently, there are no required configuration options. All settings are managed through the NetBox UI.

Permissions Required

To use this plugin, users need the following permissions:

  • ipam.view_ipaddress - View IP addresses
  • ipam.change_ipaddress - Modify IP addresses
  • ipam.view_prefix - View prefixes

Troubleshooting

Custom fields not syncing

  • Ensure that the tenant_permissions and tenant_permissions_ro custom fields exist in NetBox
  • Verify that these custom fields are assigned to both Prefix and IP Address models
  • Check that the field names match exactly (case-sensitive)

No IP addresses found

  • Make sure the prefix status is not "container" (container prefixes are skipped)
  • Verify that IP addresses exist within the prefix range
  • Check that you have permission to view the IP addresses

Permission denied errors

  • Ensure your user account has the required permissions listed above
  • Contact your NetBox administrator if you lack necessary permissions

Support

For issues, feature requests, or contributions, please visit the project repository.

License

GNU General Public License v3.0 - See LICENSE file for details.

Acknowledgements

This project was inspired in part by the work done in the netbox-interface-synchronization plugin by NetTech2001. Their approach to interface synchronization in NetBox provided valuable guidance when designing the permission-sync logic for IP addresses. A big thanks to them for sharing their project with the community!

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

netbox_ip_permissions_synchronization-0.0.13.tar.gz (22.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

File details

Details for the file netbox_ip_permissions_synchronization-0.0.13.tar.gz.

File metadata

File hashes

Hashes for netbox_ip_permissions_synchronization-0.0.13.tar.gz
Algorithm Hash digest
SHA256 6a32d610f79cf2ede4a28d7190ec4a5b4248e9cec249a0d96cc5ed20a49ee261
MD5 617e9939cf04be28fdcc8fc87b1edebd
BLAKE2b-256 7e82441286f1286f11c7c878bad861108cbcad0c5b9ce3ae4887da34d4fb1251

See more details on using hashes here.

Provenance

The following attestation bundles were made for netbox_ip_permissions_synchronization-0.0.13.tar.gz:

Publisher: publish.yml on LoH-lu/netbox_ip_permissions_synchronization

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file netbox_ip_permissions_synchronization-0.0.13-py3-none-any.whl.

File metadata

File hashes

Hashes for netbox_ip_permissions_synchronization-0.0.13-py3-none-any.whl
Algorithm Hash digest
SHA256 4dc87f5d0723bc58cc68cc1cc2cef2e9cbb52854a943b60639db388d80340a88
MD5 4a6050ecccbd52b197e0db1afd6d2751
BLAKE2b-256 c1ccbcffcc2d18bdd15329e5e1b9d7b75d2bdb8e7eb9a28c93b8b3b666e02211

See more details on using hashes here.

Provenance

The following attestation bundles were made for netbox_ip_permissions_synchronization-0.0.13-py3-none-any.whl:

Publisher: publish.yml on LoH-lu/netbox_ip_permissions_synchronization

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page