Skip Navigation

Configure your firewall for the
CylanceGATEWAY Connector

The
CylanceGATEWAY Connector
runs inside your private network, behind your firewall, and has a private IP address. It connects to the
CylanceGATEWAY
cloud service with HTTPS and UDP. The
CylanceGATEWAY Connector
must be able to connect to
CylanceGATEWAY
through your firewall (via NAT).
The
CylanceGATEWAY Connector
must be able to use DNS to resolve public
CylanceGATEWAY
FQDNs to Internet IP addresses. The
CylanceGATEWAY Connector
uses your private DNS servers to do this.
The
CylanceGATEWAY
agent communicates over secure websockets (WSS) with the management console and must be able to establish this connection directly. To allow the
CylanceGATEWAY
agent to activate and periodically authenticate, you must allow access to the appropriate domains (for example, idp.blackberry.com and the domain for your region). If your environment uses an authentication proxy, you must allow the traffic on the proxy server.
For more information about FQDNs, ports, IP address ranges and other firewall requirements, visit support.blackberry.com/community to read article 79017. For more information on network requirements for
Cylance Endpoint Security
, see Cylance Endpoint Security network requirements.