Claude Desktop: 'All domains' network egress setting triggers invalid pattern error
Status Fixed / completed
Maintainer reply None cached
Workaround ✓ Mentioned in description ↑
Activity 14 comments · opened Jan 29, 2026 · closed Aug 25, 2026
Description
In Claude for Mac Desktop, selecting "All domains" in the network egress/domain allowlist settings causes a validation error on app startup:
Invalid network egress settings
Some hostname patterns aren't valid and will be skipped. Fix or remove them in Settings.
View details
*: Invalid domain pattern. Must be a valid domain (e.g., "example.com") or wildcard (e.g., "*.example.com"). Overly broad patterns like "*.com" or "*" are not allowed for security reasons.
Steps to Reproduce
- Open Claude for Mac Desktop
- Go to claude.ai → Settings
- Set domain allowlist to "All domains"
- Restart Claude for Mac Desktop
- Open the Cowork tab
Expected Behavior
The "All domains" option should either:
- Set a valid internal configuration that doesn't trigger validation errors
- Not be offered as an option if
*patterns are not allowed
Actual Behavior
The "All domains" option sets a * pattern that the app's own validation rejects, creating a contradictory state where a UI option produces an invalid configuration.
Workaround
Select "Package managers only" or "None" instead of "All domains".
Environment
- Claude for Mac Desktop (latest version)
- macOS
14 Comments
I'm experiencing this on a Team plan where the network egress setting is controlled at the org level by admins. As an individual team member, I have no access to change this setting myself, which leaves me completely blocked from using Cowork until this is fixed.
Impact: Unable to use Cowork at all until either this bug is fixed or our admin changes to a more restrictive network setting.
I couldn't access the internet through claude cowork due to this issue. I need help to fix this issue
I have the same problem. CoWork cannot access the internet
Cowork also can‘t access the internet on my mac (desktop app). This is crazy! Anthropic’s selling a broken feature…
<img width="1442" height="556" alt="Image" src="https://github.com/user-attachments/assets/e3368b18-4c04-41d9-bf26-57ce8d3561af" />
Same issue. It just fails to fetch any domain now.
also a problem here.
same issue here, any solution for Cowork?
I am experiencing the same issue again while using the Claude Code schedule feature.
error log:
I am facing the same issue even though I have whitelisted all domains for egress in settings.
Same here. Can't fetch anything regardless of the egress settings.
Same here.
+1
When asked what proxy it was referring to, Claude replies:
So the allowlist in Settings → Capabilities is the configuration for that proxy. The fact that it's still blocking after you added the domains and restarted suggests the proxy either isn't reading the updated config, or the setting is stored somewhere it isn't checking.
This is definitely something for Anthropic to fix — the settings UI should be the source of truth for that proxy. Worth reporting as a bug.
It doesn't matter whether I specify domains or choose "All domains", nothing works.
Further testing after explicitly mentioning the domains I need access to in my prompt:
then
The evidence is pretty clear-cut for a bug report to Anthropic:
The sandbox proxy at localhost:3128 still returns X-Proxy-Error: blocked-by-allowlist for every external domain
Restarting Claude Desktop has no effect
Same issue, macOS, All domains setting has no effect