Software Secure Access
Activity Manage

Outbound Network Access to Secure Access

The server where you install the AD Connector requires outbound access on certain domains and URLs. If you are using a transparent HTTP web proxy, ensure that these domains and URLs on port 80/443 are excluded from the proxy, and not subject to authentication.

  • For syncing, allow traffic on 443 (TCP) to api.sse.cisco.com.
  • For Windows to perform Certificate Revocation List and Code-Signing checks, allow access to additional URLs on port 80/443 (TCP). For a complete list of ports, see AD Connector Communication Flow and Troubleshooting.
  • For downloading upgrades, allow traffic on 443 (TCP) to disthost.umbrella.com.