Firewall requirements for On-Prem to Cloud MobiControl migration

SK
Sunil Kataria
UNISYS AUSTRALIA PTY LIMITED

We're migrating from on-premises MobiControl to Cloud MobiControl and want to confirm firewall requirements.

Our understanding: devices just need outbound HTTPS (443) to the Cloud instance.

Questions:

  1. Can all device traffic be NATed behind a single firewall IP, or do scanners need individual public IPs?
  2. Should we allow-list specific FQDNs instead of IPs, since cloud IPs may change?

Thanks in advance for any guidance from those who've done this migration.

a month ago
SOTI MobiControl
ANSWERS
A
ASBMOD@SOTI
16 days ago

Hi @Sunil Kataria,

Thank you for posting on SOTI Pulse.

Regarding the firewall requirements for migrating from on-premises MobiControl to Cloud MobiControl, the exact requirements may depend on your environment and configuration. Therefore, I would not want to provide an unconfirmed answer regarding whether all device traffic can be NATed through a single public IP or whether specific public IPs are required, or whether FQDNs should be allow-listed.

If you would like us to investigate this further and validate the feasibility of the proposed setup, we would request you to create a support case with SOTI. Please do not hesitate to reach out to SOTI Support at support@soti.net to open a new case, and one of our Support Engineers will be able to assist you with further investigation.

This will also allow our team to provide you with the appropriate guidance based on your Cloud MobiControl setup.

Thank you for your understanding and cooperation.

Kind Regards,

Technical Support | SOTI Inc. |1.905.624.9828 | support@soti.net | www.soti.net |