How to set up the firewall for the local TACACS+ instance to connect to Portnox Cloud

In this topic, you will learn how to configure your firewall to make sure that the local TACACS+ instance can communicate with the cloud TACACS+ instances.

You need to open the following ports on your firewall:

Protocol Ports URL Direction IP
TCP 443 tm-tacacs-aahandler-prod.portnox.com Outbound 20.120.63.224
tacacs-aahandler-aks-clear-prod-eus.portnox.com 20.76.226.181
tacacs-aahandler-aks-clear-prod-weu.portnox.com
TCP 443 tm-tacacs-prod.portnox.com Outbound 20.120.63.254
tacacs-aks-clear-prod-eus.portnox.com 20.76.226.151
tacacs-aks-clear-prod-weu.portnox.com
TCP 443 tacacs-prod-eastus.servicebus.windows.net Outbound 52.168.117.20
tacacs-prod-westeu.servicebus.windows.net 20.42.74.19
20.42.68.88
52.178.17.145
20.50.201.85
13.69.111.148
TCP 443 tacacsprodus.blob.core.windows.net Outbound 52.239.171.228
TCP 443 logs-consolidation-prod-eastus.servicebus.windows.net Outbound 40.79.155.4
logs-consolidation-prod-westeu.servicebus.windows.net 13.69.64.6