Firewall
To connect to the Optimo IoT Cloud, the network to which the AL300 is connected must allow outgoing traffic to the internet on the ports listed below.
- TCP 443:
- monitoring data
- VPN service (optional)
- TCP 8883: if open for outgoing traffic, it is used for sending monitoring data instead of 443 (lower data consumption)
- UDP 53: DNS. Alternatively, it is possible to specify an internal DNS server for the company network
- UDP 123: NTP (date/time synchronization), in case the VPN service is not active. The gateway has an RTC with a battery. If the port is not open for outgoing traffic in the long term (years), there may be time drifts on the order of seconds. If in the very long term (more years) the RTC battery runs out and the gateway is restarted, the correct time may be lost
Note
It is not necessary (in fact, it is not recommended) that the gateway has a public IP address or that it is reachable from outside the local network
If the company network has a firewall that needs to be configured to allow outgoing traffic to some specific FQDN, it is possible to request the list by sending an email to info@optimoiot.it