Firewall/Proxy dependencies for the Sinefa Probe(s)
In order to take advantage of all available features, the following connections will need to be allowed on your security devices. This may consist of, but is not limited to Firewalls, SD-WAN and Proxy appliances.
Source |
Destination |
Default Port(s) |
Required |
Recommended |
Optional |
Sinefa Probe |
*.sinefa.com |
443 ICMP |
X |
|
|
Sinefa Probe |
updates.sinefa.com |
TCP/80 |
X |
|
|
Sinefa Probe |
NTP Server |
UDP/123 |
|
X |
|
Sinefa Probe |
DNS Server |
UDP/53 TCP/53 |
X |
|
|
Sinefa Probe |
Active Directory |
TCP/389 TCP/636 |
|
X |
|
Sinefa Probe |
Sinefa Probe |
TCP/9200 UDP/9200 ICMP |
|
X |
|
User |
Sinefa Probe |
TCP/22 |
|
|
X |
User |
*.sinefa.com |
TCP/443 |
X |
|
|
NetFlow Source |
Sinefa Probe |
UDP/2055 |
|
|
X |
NMS |
Sinefa Probe |
UDP/161 |
|
X |
|
|
|
|
|
|
|
Below is a more detailed explanation of the table above:
TCP 443 (HTTPS)
Between: Probe(s) and Sinefa App servers (e.g. ui.sinefa.com)
Connection initiated by: Probe
Use: Communications between Probe and Sinefa App server or Self-host Sinefa server (for sending results/data and probe configuration purposes)
Mandatory: YES
TCP 80 (HTTP)
Between: Probe(s) and Sinefa software update servers (updates.sinefa.com)
Connection initiated by: Probe
Use: To download new software updates
Mandatory: NO (only required to receive software updates)
TCP 9200 and UDP 9200 (Sinefa NQS testing)
Between: Probe(s) and Probe(s)
Connection initiated by: Either side (this is user configurable)
Use: To generate Network Quality Scores
Mandatory: NO (NQS scoring will not work if these ports are not open)
UDP 123 (NTP)
Between: Probe(s) and configured NTP Server
Connection initiated by: Probe
Use: To get the correct time for the Probe
Mandatory: YES (otherwise timestamps and results will be wrong)
TCP 53 and UDP 53 (DNS)
Between: Probe(s) and configured DNS Server
Connection initiated by: Probe
Use: To resolve host and domain names
Mandatory: YES (if using Sinefa App servers) or NO (if using Self-host Sinefa server)
Additional Ports Required for Self-Host Sinefa Server
TCP 443 (HTTPS)
Between: Self-host Sinefa server and Mandrill email servers (mandrillapp.com)
Connection initiated by: Self-host Sinefa server
Use: To invite users into the system and to send email alerts
Mandatory: NO (however user invites or email alerts won't work)
UDP 123 (NTP)
Between:Self-host Sinefa server and configured NTP Server
Connection initiated by: Self-host Sinefa server
Use: To get and maintain the correct time for the Self-host Sinefa server
Mandatory: YES (otherwise timestamps and results will be wrong)
TCP 53 and UDP 53 (DNS)
Between: Probe(s) and configured DNS Server
Connection initiated by: Self-host Sinefa server
Use: To resolve host and domain names
Mandatory: NO (however sending of emails and software update won't work)
See Also
How to Setup Network Quality Scoring (NQS)
How are quality metrics measured?
Comments
0 comments
Please sign in to leave a comment.