Security

Splunk TV: Firewall Rules to connect Apple TV + Splunk TV app to Splunk Cloud Gateway / Cloud Bridge

st4ple
Path Finder

I'm trying to get Splunk TV on Apple TV approved by Security in my company. The connection from the Cloud Gateway app on the SHC to the Cloud Bridge is sufficently documented here: https://docs.splunk.com/Documentation/Gateway/1.8.0/Installation/Installation, but I'm struggling to find the equivalent for the connection between the Cloud Bridge and Apple TV with the Splunk TV app on it.

What I'm trying to find out is what connections on which port(s) I need to open in the Firewall for Apple TV and the Splunk TV app to work.

Does anyone have more details here? Perhaps from your own attempts of getting Splunk TV on Apple TV approved?

0 Karma
1 Solution

FrankVl
Ultra Champion

Looking at outbound network traffic from my AppleTV around the time I had the Splunk TV app open, it is only connecting out on port 443 it seems.

Bit hard to pinpoint to which hosts, but I do see one of the IPs belonging to prod.spacebridge.spl.mobi showing up. Combining that with the mouse over text on that image in the docs, it seems 443 to prod.spacebridge.spl.mobi is all you need, both for the connection between splunk and the cloud bridge as well as from the appletv/mobile devices to the cloud bridge.

View solution in original post

FrankVl
Ultra Champion

Looking at outbound network traffic from my AppleTV around the time I had the Splunk TV app open, it is only connecting out on port 443 it seems.

Bit hard to pinpoint to which hosts, but I do see one of the IPs belonging to prod.spacebridge.spl.mobi showing up. Combining that with the mouse over text on that image in the docs, it seems 443 to prod.spacebridge.spl.mobi is all you need, both for the connection between splunk and the cloud bridge as well as from the appletv/mobile devices to the cloud bridge.

Get Updates on the Splunk Community!

New This Month in Splunk Observability Cloud - Metrics Usage Analytics, Enhanced K8s ...

The latest enhancements across the Splunk Observability portfolio deliver greater flexibility, better data and ...

Alerting Best Practices: How to Create Good Detectors

At their best, detectors and the alerts they trigger notify teams when applications aren’t performing as ...

Discover Powerful New Features in Splunk Cloud Platform: Enhanced Analytics, ...

Hey Splunky people! We are excited to share the latest updates in Splunk Cloud Platform 9.3.2408. In this ...