Firewall Configuration

This section describes the firewall ports that may need to be configured to use Cloudpath and Wizard. Cloudpath must be able to communicate with:

  • xpc.cloudpath.net (TCP 80/443-HTTP/HTTPS)
  • NTP server, 0.centos.pool.ntp.org on the standard NTP port (123). This can be configured to point to a local server during system setup, if you prefer.

Depending on your network configuration, you might be required to configure other firewall ports. See the following table.

Firewall Ports for Use with Cloudpath

Port Protocol Notes
80 TCP and UDP Android Communications
443 TCP and UDP Android communications with Google Play and Amazon Market.
5228 TCP and UDP Android APK
389 TCP Active Directory, LDAP queries
80 TCP NPS query to Cloudpath for OCSP
1812 UDP RADIUS Authentication
1813 UDP RADIUS Accounting
8022   SSH. This is the default port for SSH.
22   SSH. This port can be configured for SSH.
3268 TCP LDAP recursive domains
  Windows RPC I f you are using the Integration Module for Microsoft CA, the web server communicates with the Microsoft CA using Windows RPC.
3799 UDP RADIUS Change of Authorization (CoA)
pool.ntp.org: 123   Perform NTP synchronization.

After Cloudpath is configured, a Firewall Requirements page is provided to help you understand the traffic to and from the system. Navigate to Administration > Firewall Requirements or see the Troubleshooting Your Deployment section for more information.