Networking Rules
Listed here are the networking rules required for and EDGE used for MAT. In case you wish to set firewall rules only at the outgoing port level, you will need to enable the following ports:
443
80
8883
8000 (enabled for websocket)
In case you want to configure the firewall by specifying each rule individually, please refer to the following table
PC configuration Curl command
matcontrolcenter.blob.core.windows.net
443
Outgoing
Receive configuration package from matcontrolcenter.blob.core.windows.net
Initial setup
OS installation and security update commands
debian.map.fastlydns.net
80
Outgoing
Update of the OS
Initial setup and security updates. Just in the Debian OS case
*.ubuntu.com
80
Outgoing
Update of the OS
Initial setup and security updates. Just in the Ubuntu OS case
download.docker.com
443
Outgoing
Docker keyring
Initial setup
Python libraries installation
files.pythonhosted.org
443
Outgoing
Python libraries installations for edge control center.
Initial setup
pypi.org
443
Outgoing
Python libraries installations for edge control center.
Initial setup
Pull of standard docker images
*.docker.io
443
Outgoing
Pull of images from dockerhub
Initial setup and software updates
production.cloudflare.docker.com
443
Outgoing
Pull of images from dockerhub
Initial setup and software updates
Pull of custom docker images
40feccregistry.azurecr.io
443
Outgoing
Pull of images from 40feccregistry
Initial setup and software updates
matcontainerregistry.azurecr.io
443
Outgoing
Pull of images from matcontainerregistry
Initial setup and software updates
*.blob.core.windows.net
443
Outgoing
Blob Storage, used by custom registries
DEPRECATED - NOT USED ANYMORE
matcontainerregistry.westeurope.data.azurecr.io
443
Outgoing
Blob Storage Services, used by custom registries
Initial setup and software updates
Integration with Portainer
portainer.40mat.com
443, 8000
Outgoing
Integration with 40Factory portainer
Setup and production
bitbucket.org
443
Outgoing
Pulling configuration from bitbucket
Initial setup and software updates
api.bitbucket.org
443
Outgoing
Pulling configuration from bitbucket
Initial setup and software updates
altssh.bitbucket.org
443
Outgoing
Pulling configuration from bitbucket
Initial setup and software updates
Sending data to the cloud - Microsoft azure
XXX.azure-devices.net
443, 8883
Outgoing
Usage of iothub, Replace XXX with the specific name of the resource.
Setup and production. Only if the cloud enviroment is Microsoft Azure.
YYY.blob.core.windows.net
443
Outgoing
Saving the iot files on the azure storage. Replace YYY with the specific name of the resource.
Setup and production. Only if the cloud enviroment is Microsoft Azure.
Sending data to the cloud - Mindsphere
southgate.eu1.mindsphere.io
443
Outgoing
Sending data to Mindsphere
Setup and production. Only if the cloud enviroment is Mindsphere.