TCP Device Onboarding - Domain Whitelisting
When deploying the Neeve agent to connect with TCP devices, firewall restrictions within customer IT/OT networks can prevent successful communication. If strict network security controls are present, specific domains, protocols, and ports must be whitelisted to allow proper connectivity.
Firewall & Network Requirements
- Outbound Access: Ensure the site firewall permits outbound traffic for the Neeve agent (CB Connector) service. Restricted outbound traffic will prevent the local edge connector from reaching the SaaS platform.
- DNS Configuration: If custom DNS servers are used, verify that they can resolve external domain names.
- Whitelisting Rules: Configure your site firewall to allow the following domain names, protocols, and ports:
|
Source |
service |
Protocol |
Port(s) |
Domain-names |
|
BrinkConnector |
BrinkSaaS |
TLS |
443 |
|
|
BrinkConnector |
BrinkSaaS |
TCP |
9090 |
-NA- |
|
BrinkConnector |
Brink FAST Edges |
UDP |
9993, 9994 |
-NA- |
|
BrinkConnector |
Public DNS |
DNS |
53 |
-NA- |