Summary
In order for your monitoring point to access APM and perform the monitoring you require, you must configure your firewall rules to allow this access. At a minimum, the monitoring point must be able to connect to the APM servers. Additional configuration beyond this is based on your monitoring needs.
To help you get started, the following table provides an example configuration for an AppNeta device, based on an environment that uses a strictly configured stateful firewall.
Direction |
Protocol |
Port(s) |
Address(es) |
Inbound |
UDP |
123 |
Addresses for all external NTP servers or Wildcard |
Oubound |
UDP |
123 |
Addresses for all external NTP servers or Wildcard |
Inbound |
TCP |
53 |
Addresses for all external DNS servers or Wildcard |
Oubound |
UDP |
53 |
Addresses for all external DNS servers or Wildcard |
Inbound |
ICMP |
|
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Oubound |
ICMP |
|
Fuze Regional Datacenter ranges |
Oubound |
TCP |
80 |
|
Oubound |
TCP |
443 |
|
Oubound |
TCP |
443 |
|
Oubound |
TCP |
443 |
|
Oubound |
TCP |
80, 443 |
|
Oubound |
TCP |
80, 443 |
|
Oubound |
TCP |
80, 8080 |
|
Oubound |
UDP |
1720 |
Fuze Regional Datacenter ranges |
Oubound |
UDP |
3239 |
Fuze Regional Datacenter ranges |
Oubound |
UDP |
5060 |
Fuze Regional Datacenter ranges |
Oubound |
UDP |
45056-49151 |
Fuze Regional Datacenter ranges |
Oubound |
UDP |
49152-65535 |
Fuze Regional Datacenter ranges |
Direction |
Protocol |
Port(s) |
Address(es) |
Inbound |
TCP |
443 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
TCP |
3236 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
UDP |
1720 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
UDP |
3239 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
UDP |
5060 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
UDP |
33434 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
Inbound |
UDP |
45056-49151 |
Fuze Regional Datacenter ranges -> NAT to Target Monitoring point |
170.76.188.0/22 |
206.81.176.0/20 |
162.223.96.0/22 |
185.155.144.0/22 |
103.197.96.0/22 |
66.151.176.0/24 |
70.42.233.0/24 |
45.252.184.0/22 |