cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
284
Views
0
Helpful
3
Replies

DUO DNG Port requirements in firewall level

Team,

Can any-one suggests that why we need to open Port-80(http) for my Duo DNG dns address. if so what could be the exact use. since 80 is vulnerable.

1 Accepted Solution

Accepted Solutions

DuoKristina
Cisco Employee
Cisco Employee

It is more about incoming http than internal url http, but yes, it seems like your deployment does not require 80 open externally.

Duo, not DUO.

View solution in original post

3 Replies 3

DuoKristina
Cisco Employee
Cisco Employee

- redirect http to https
- specifically required if you opt for a Let's Encrypt cert

If you don't need either of these then try not opening 80.

Duo, not DUO.

I'm putting my understanding here let me know if I'm correct.

Redirect URL - this means if internal url is supported of https. Then 80 port is not required.

Let's encrypt cert - if we have an internal CA server with SSL certificates of each then it's not required to open.

 

 

Thanks advance.

 

DuoKristina
Cisco Employee
Cisco Employee

It is more about incoming http than internal url http, but yes, it seems like your deployment does not require 80 open externally.

Duo, not DUO.
Quick Links