Security

Splunk TV: Firewall Rules to connect Apple TV + Splunk TV app to Splunk Cloud Gateway / Cloud Bridge

st4ple
Path Finder

I'm trying to get Splunk TV on Apple TV approved by Security in my company. The connection from the Cloud Gateway app on the SHC to the Cloud Bridge is sufficently documented here: https://docs.splunk.com/Documentation/Gateway/1.8.0/Installation/Installation, but I'm struggling to find the equivalent for the connection between the Cloud Bridge and Apple TV with the Splunk TV app on it.

What I'm trying to find out is what connections on which port(s) I need to open in the Firewall for Apple TV and the Splunk TV app to work.

Does anyone have more details here? Perhaps from your own attempts of getting Splunk TV on Apple TV approved?

0 Karma
1 Solution

FrankVl
Ultra Champion

Looking at outbound network traffic from my AppleTV around the time I had the Splunk TV app open, it is only connecting out on port 443 it seems.

Bit hard to pinpoint to which hosts, but I do see one of the IPs belonging to prod.spacebridge.spl.mobi showing up. Combining that with the mouse over text on that image in the docs, it seems 443 to prod.spacebridge.spl.mobi is all you need, both for the connection between splunk and the cloud bridge as well as from the appletv/mobile devices to the cloud bridge.

View solution in original post

FrankVl
Ultra Champion

Looking at outbound network traffic from my AppleTV around the time I had the Splunk TV app open, it is only connecting out on port 443 it seems.

Bit hard to pinpoint to which hosts, but I do see one of the IPs belonging to prod.spacebridge.spl.mobi showing up. Combining that with the mouse over text on that image in the docs, it seems 443 to prod.spacebridge.spl.mobi is all you need, both for the connection between splunk and the cloud bridge as well as from the appletv/mobile devices to the cloud bridge.

Get Updates on the Splunk Community!

Continuing Innovation & New Integrations Unlock Full Stack Observability For Your ...

You’ve probably heard the latest about AppDynamics joining the Splunk Observability portfolio, deepening our ...

Monitoring Amazon Elastic Kubernetes Service (EKS)

As we’ve seen, integrating Kubernetes environments with Splunk Observability Cloud is a quick and easy way to ...

Cloud Platform & Enterprise: Classic Dashboard Export Feature Deprecation

As of Splunk Cloud Platform 9.3.2408 and Splunk Enterprise 9.4, classic dashboard export features are now ...