By default, most firewalls allow outbound traffic, while blocking inbound traffic. SLASCONE traffic is outbound, so it should be allowed in most cases. If not, a firewall rule is necessary.
INSTALLATION RULE
In order to circumvent potential firewall restrictions, it is recommended to define an outbound firewall rule, during the installation of the application. An IP based inbound firewall rule is not necessary. You may optionally further restrict the rule to the port used for https (443 by default).
WINDOWS FIREWALL
You can easily create such a firewall rule using powershell:
New-NetFirewallRule -DisplayName “Slascone-Client” -Direction Outbound -Program “PathToProgramm” -RemoteAddress “20.126.54.190” -Action Allow
STATIC IP
The official api365.slascone.com has the static IP address 20.126.54.190:
AZURE FRONT DOOR
If you have a Private Azure Deployment with Azure Front Door, you need to consider that Azure Front Door does not have a fix static IP. Microsoft publishes an official file of its public IPs. According to Microsoft:
This file is updated weekly. New ranges appearing in the file will not be used in Azure for at least one week.
You can programmatically fetch these addresses via the following PowerShell script:
$serviceTags = Get-AzNetworkServiceTag -Location westeurope
$fd = $serviceTags.Values | Where-Object { $_.Name -eq "AzureFrontDoor.Frontend" }
$fd
As of 11/15/2022 (Change number 21), the relevant IPs for accessing the SLASCONE API (through Azure Front Door) are:
{
"name": "AzureFrontDoor.Frontend",
"id": "AzureFrontDoor.Frontend",
"properties": {
"changeNumber": 21,
"region": "",
"regionId": 0,
"platform": "Azure",
"systemService": "",
"addressPrefixes": [
"4.232.98.112/29",
"13.73.248.8/29",
"13.107.208.0/24",
"13.107.213.0/24",
"13.107.219.0/24",
"13.107.224.0/24",
"13.107.226.0/23",
"13.107.228.0/23",
"13.107.231.0/24",
"13.107.234.0/23",
"13.107.237.0/24",
"13.107.238.0/24",
"13.107.246.0/24",
"13.107.253.0/24",
"20.21.37.32/29",
"20.36.120.96/29",
"20.37.64.96/29",
"20.37.156.112/29",
"20.37.192.88/29",
"20.37.224.96/29",
"20.38.84.64/29",
"20.38.136.96/29",
"20.39.11.0/29",
"20.41.4.80/29",
"20.41.64.112/29",
"20.41.192.96/29",
"20.42.4.112/29",
"20.42.129.144/29",
"20.42.224.96/29",
"20.43.41.128/29",
"20.43.64.88/29",
"20.43.128.104/29",
"20.45.112.96/29",
"20.45.192.96/29",
"20.51.7.32/29",
"20.52.95.240/29",
"20.59.82.180/30",
"20.72.18.240/29",
"20.97.39.120/29",
"20.119.28.40/29",
"20.150.160.72/29",
"20.189.106.72/29",
"20.192.161.96/29",
"20.192.225.40/29",
"20.210.70.68/30",
"20.215.4.200/29",
"20.217.44.200/29",
"40.67.48.96/29",
"40.74.30.64/29",
"40.80.56.96/29",
"40.80.168.96/29",
"40.80.184.112/29",
"40.82.248.72/29",
"40.89.16.96/29",
"40.90.64.0/22",
"40.90.68.0/24",
"40.90.70.0/23",
"51.12.41.0/29",
"51.12.193.0/29",
"51.53.28.216/29",
"51.104.24.88/29",
"51.105.80.96/29",
"51.105.88.96/29",
"51.107.48.96/29",
"51.107.144.96/29",
"51.120.40.96/29",
"51.120.224.96/29",
"51.137.160.88/29",
"51.143.192.96/29",
"52.136.48.96/29",
"52.140.104.96/29",
"52.150.136.112/29",
"52.228.80.112/29",
"68.221.92.24/29",
"102.133.56.80/29",
"102.133.216.80/29",
"104.212.67.0/24",
"104.212.68.0/24",
"158.23.108.48/29",
"191.233.9.112/29",
"191.235.224.88/29",
"2603:1000:4::5e0/123",
"2603:1000:104::c0/123",
"2603:1000:104::160/123",
"2603:1000:104:1::5a0/123",
"2603:1000:104:1::7c0/123",
"2603:1010:6:1::5a0/123",
"2603:1010:6:1::7c0/123",
"2603:1010:101::5e0/123",
"2603:1010:304::5e0/123",
"2603:1010:404::5e0/123",
"2603:1020:5:1::5a0/123",
"2603:1020:5:1::7c0/123",
"2603:1020:206:1::5a0/123",
"2603:1020:206:1::7c0/123",
"2603:1020:305::5e0/123",
"2603:1020:405::5e0/123",
"2603:1020:605::5e0/123",
"2603:1020:705:1::5a0/123",
"2603:1020:705:1::7c0/123",
"2603:1020:805:1::5a0/123",
"2603:1020:805:1::7c0/123",
"2603:1020:905::5e0/123",
"2603:1020:a04:1::5a0/123",
"2603:1020:a04:1::7c0/123",
"2603:1020:b04::5e0/123",
"2603:1020:c04:1::5a0/123",
"2603:1020:c04:1::7c0/123",
"2603:1020:d04::5e0/123",
"2603:1020:e04:1::5a0/123",
"2603:1020:e04:1::7c0/123",
"2603:1020:f04::5e0/123",
"2603:1020:1004::5a0/123",
"2603:1020:1004::7c0/123",
"2603:1020:1104::5e0/123",
"2603:1020:1204:2::c0/123",
"2603:1020:1302:1::1a0/123",
"2603:1020:1403:2::e0/123",
"2603:1030:f:1::5e0/123",
"2603:1030:10:1::5a0/123",
"2603:1030:10:1::7c0/123",
"2603:1030:104:1::5a0/123",
"2603:1030:104:1::7c0/123",
"2603:1030:107::680/123",
"2603:1030:210:1::5a0/123",
"2603:1030:210:1::7c0/123",
"2603:1030:40b:1::5a0/123",
"2603:1030:40c:1::5a0/123",
"2603:1030:40c:1::7c0/123",
"2603:1030:504:1::5a0/123",
"2603:1030:504:1::7c0/123",
"2603:1030:608::5e0/123",
"2603:1030:702:2::e0/123",
"2603:1030:807:1::5a0/123",
"2603:1030:807:1::7c0/123",
"2603:1030:a07::5e0/123",
"2603:1030:b04::5e0/123",
"2603:1030:c06:1::5a0/123",
"2603:1030:f05:1::5a0/123",
"2603:1030:f05:1::7c0/123",
"2603:1030:1005::5e0/123",
"2603:1040:5::c0/123",
"2603:1040:5:1::5a0/123",
"2603:1040:5:1::7c0/123",
"2603:1040:207::5e0/123",
"2603:1040:407:1::5a0/123",
"2603:1040:407:1::7c0/123",
"2603:1040:606::5e0/123",
"2603:1040:806::5e0/123",
"2603:1040:904:1::5a0/123",
"2603:1040:904:1::7c0/123",
"2603:1040:a06::c0/123",
"2603:1040:a06:1::5a0/123",
"2603:1040:a06:1::7c0/123",
"2603:1040:b04::5e0/123",
"2603:1040:c06::5e0/123",
"2603:1040:d04::5a0/123",
"2603:1040:d04::7c0/123",
"2603:1040:f05:1::5a0/123",
"2603:1040:f05:1::7c0/123",
"2603:1040:1002:1::1c0/123",
"2603:1040:1104::5e0/123",
"2603:1040:1302:1::4c0/123",
"2603:1040:1402:1::1a0/123",
"2603:1050:6:1::5a0/123",
"2603:1050:6:1::7c0/123",
"2603:1050:403::5a0/123",
"2620:1ec:27::/48",
"2620:1ec:29::/48",
"2620:1ec:40::/47",
"2620:1ec:46::/47",
"2620:1ec:48::/45",
"2620:1ec:bdf::/48"
],
"networkFeatures": [
"API",
"NSG",
"UDR",
"FW"
]
}
}
Comments
0 comments
Please sign in to leave a comment.