There is generally no need for you to configure port forwards or firewall rules.
However, in cases where a firewall denies outbound traffic by default or uses manual NAT, it may be helpful to review the following information.
In certain situations, however, it may be necessary to allow these ports on a customer's firewall. We recommend utilizing the subnet ranges, as there may be more than one server on one Geo Node that can serve the same function. The following are Subnet Ranges and IP addresses that are in use by our systems.
The following protocols and ports are used by our systems:
| Protocol | Port/s | Use |
|---|
| TCP | 80, 443 | Web UI's and provisioning servers |
| TCP | 80, 442, 443 | Instant Fax server |
| UDP | 5060 | SIP signaling |
| TCP | 7000, 7001 | Fax ATA |
| TCP | 8001 | Web Sockets |
| TCP | 8000 | Text-to-Speech |
| UDP | 8889 | Web Meetings and Video Conferences |
| UDP | 17000-35999 | RTP |
The following ports are used by the UC Client:
- TCP - 443, 9002 (Encrypted Web Socket Traffic)
- UDP - 443, 30000-40000 (Audio communications over DTLS, which is TLS for UDP)
The UC Client uses encrypted WebSocket connections on ports 443 TCP/UDP and 9002 TCP. Additionally, audio communications are achieved via DTLS (TLS for UDP) on ports 30000 - 40000 UDP.
For web socket and api connections, it is recommended that the customer allow traffic to ws.connectuc.io, api.connectuc.io, and *.reachuc.com versus trying to lock down traffic to particular IP addresses.
The following FQDN is used by Instant Fax ATAs: ata.instant-fax.com