cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
930
Views
5
Helpful
2
Replies

Firewall ports required for VPN to sandbox

praestans
Level 1
Level 1

Hi, I'm brand new to the DevNet sandbox, and trying to connect to it with my VPN client, but I have the exterior of my network locked down to typically used ports and the VPN client won't connect. I opened the firewall to the IP that the VPN client is attempting to connect to, but still it won't connect unless I remove the firewall altogether. Once I do that it connects fine, but I'm not comfortable completely exposing my internal network while I work in the sandbox, so I need to know what to open in the firewall. I haven't found any documentation that explains this.

Thanks for the help.

2 Replies 2

Hello @praestans TCP port 443 is required for SSL VPN with Anyconnect, UDP port 443 is required for DTLS over SSL but this is optional.
Ephemeral ports are required also, the range is anywhere between 20100 and 20354.

 

Hope this helps.

Please mark this as helpful or solution accepted to help others
Connect with me https://bigevilbeard.github.io

Hi @bigevilbeard 

Can you please confirm the VPN IP address range also for the same ?