Home > 8e6 Technologies > 8e6 R3000 IR firewall requirements

8e6 R3000 IR firewall requirements

Tags:  




Services Overview

The 8e6 R3000-IR (aka "integrated reporter") effectively hosts three separate 8e6 services.    You manage each component via separate web-based administrative interface; each running on unique port(s)

  1. web filter service

  2. reporting back-end database administration

  3. reporter client


Firewall Minimum Requirements:

The table below assumes R3000-IR appliance on firewall controlled DMZ (or similar network where all traffic to/from network require specific firewall rules).

Rule Description
Protocol/Port
Direction
(inbound = TO appliance)
Rule Target
R3000 web filter admin
http/88, https/1443
inbound
any
ER database admin
http/808, https/8843
inbound
any
Web Reporter Client
http/8080, https/8443
inbound
any
8e6 R3000 service landing pg
http/88, https/1443
inbound
any
8e6 default block page
http/81
inbound
any
8e6 remote support
ssh/22
inbound
209.11.160.50
8e6 secure updates **
https/443
outbound
secureupdate.8e6.com

**  This rule assume "best practice" followed to change Update Configuration to use HTTPS (instead of FTP).

Firewall Requirements for Authentication:


Rule Description
Port
Direction
(inbound = TO appliance)
Rule Target
8e6 Authenticator
   (authenticat.exe)
139
inbound (auth virtual IP)
any (local workstation)





The table below inserted from 8e6 R3000-IR Authentication User Guide (R3000 v2.0x/ER v4.1)

8e6 authentication ports






 RSS of this page