Adjusting firewall rules for Nomad

If you deploy SafeLinx in a DMZ as is typical, you may need to modify internal and external firewall rules.

Procedure

Ensure your firewall configuration accounts for the following characteristics of the SafeLinx service:
  • The service defaults to using TLS 1.3 over the default port 443 (configurable). Mobile devices must be able to open TCP connections to this port.
    Note: TLS 1.2 is also enabled.
  • The service talks to Domino servers on the back end using TCP port 1352
  • Authentication services communicate with the Domino LDAP service on port 389 or 636 (secure).
  • Remote database server connectivity requires RDBMS.