---
title: "Port Usage"
canonical: "https://docs.infoblox.com/space/BloxOneCloud/35367658/Port%20Usage"
format: markdown
---
<span style="color: #000000">The following table lists the port usage for a successful Data Connector deployment.</span>

| **Data Connector Port Usage ** |
| --- |
| **IP Protocol** | **Port** | **Source** | **Destination** | ** Description** |
| TCP | 443 | <span style="color: #111111">NIOS Appliance</span> | <u>csp.infoblox.com</u> | Cloud Services Portal Access (unrestricted outbound access to TCP 443) |
| TCP | 443 | <span style="color: #111111">NIOS Appliance</span> | <u>cp.noa.infoblox.com</u> | Host – Platform Management |
| TCP | 443 | <span style="color: #111111">NIOS Appliance</span> | <u>app.noa.infoblox.com</u> | Host – Application Management |
| [<span style="color: #0000ff"><u>*IPs in one JSON formatted list*</u></span>](https://infoblox-whitelist.s3.amazonaws.com/infoblox-ip-whitelist.json)<br>[<span style="color: #0000ff"><u>*URLs in one JSON formatted list*</u></span>](https://infoblox-whitelist.s3.amazonaws.com/infoblox-url-whitelist.json) |
| UDP/TCP | 53 | <span style="color: #4d5156">NIOS Appliance</span> | <u>threatdefense.bloxone.infoblox.com</u> | <span style="color: #172b4d">Default Local DNS Resolver</span><br><span style="color: #172b4d">52.119.40.100</span>  
<span style="color: #172b4d">103.80.5.100</span> |
| UDP | 123 | <span style="color: #4d5156">NIOS Appliance</span> | <u>ntp.ubuntu.com</u> | NTP Server (<span style="color: #000000">For OVA only. In case NTP was not provisioned and time sync is disabled.</span>) |
| UDP | 123 | <span style="color: #4d5156">NIOS Appliance</span> | <u>ubuntu.pool.ntp.org</u> | NTP Server (Only needed if time sync with ESXi is disabled.) |
| TCP | 22 | NIOS appliance | Data Connector | Open this port if you want to send data using SCP from the Infoblox NIOS appliance (if configured) to Data Connector.<br><span style="color: #111111">The NIOS UI provides a mechanism to filter the domains it sends to Data Connector. Since NIOS is sending cache logs, when configuring NIOS for use with Data Connector, make sure to configure Data Connector to exclude internal corporate and authoritative domains (</span><span style="color: #111111">***.<corp>/Authorititative**</span><span style="color: #111111">). By excluding corporate and authoritative domains, internal traffic logs will not be added.</span><br><span style="color: #000000">Required for incoming SCP data transfer from NIOS to Data Connector when deployed as a container. When you deploy Data Connector as a container, ensure that there are no SSH processes listening on port 22. You must terminate these SSH processes for Data Connector to collect data from NIOS.</span><br><span style="color: #000000">If you deploy Data Connector as a container, ensure that there are no SSH processes listening on port 22. You must terminate these SSH processes for Data Connector to collect data from NIOS.</span> |
| TCP | 514 | NIOS appliance | Data Connector | Open this port if you want to send syslogs and secure syslogs for RPZ from the Infoblox NIOS appliance (if configured) to Data Connector. **Note**: Port 514 is an insecure port.<br><span style="color: #111111">The NIOS UI provides a mechanism to filter the domains it sends to Data Connector. Since NIOS is sending cache logs, when configuring NIOS for use with Data Connector, make sure to configure Data Connector to exclude internal corporate and authoritative domains (</span><span style="color: #111111">***.<corp>/Authoritative**</span><span style="color: #111111">). By excluding corporate and authoritative domains, internal traffic logs will not be added.</span><br><span style="color: #000000">Required for Data Connector secure syslog for RPZ hits data. If you deploy Data Connector as a container, ensure that this port is not used by other processes.</span><br><span style="color: #000000">If you deploy Data Connector as a container, ensure that this port is not used by other processes for Data Connector to collect data from NIOS.</span> |
| TCP | 6514 | NIOS appliance | Data Connector | Open this port if you want to send syslogs and secure syslogs for RPZ from the Infoblox NIOS appliance (if configured) to Data Connector.** Note**: Port 6514 is a secure port.<br><span style="color: #111111">The NIOS UI provides a mechanism to filter the domains it sends to Data Connector. Since NIOS is sending cache logs, when configuring NIOS for use with Data Connector, make sure to configure Data Connector to exclude internal corporate and authoritative domains (</span><span style="color: #111111">***.<corp>/Authoritative**</span><span style="color: #111111">). By excluding corporate and authoritative domains, internal traffic logs will not be added.</span><br><span style="color: #000000">Used for transferring syslog data from NIOS to Data container. Port 6514 is a default secure port. If you deploy Data Connector as a container, ensure that this port is not used by other processes.</span><br><span style="color: #000000">If you deploy Data Connector as a container, ensure that this port is not used by other processes for Data Connector to collect data from NIOS.</span> |

| **Data Connector Deployment - Reserved Destinations** |
| --- |
| **IP Protocol** | **Port** | **Source** | **Destination (Reserved for BloxOne Services only)** | ** Description** |
| UDP | 8125 | Data Connector deployment | <span style="color: #000000">This port is reserved for use by BloxOne services.</span> | This port is for bare-metal deployments only.<br><span style="color: #000000">This is an internal port used for communications between containers. </span><br><span style="color: #000000">This port is reserved for BloxOne services only. This port should not be used by our customers.</span> |
| TCP | 8126 | Data Connector deployment | <span style="color: #000000">This port is reserved for use by BloxOne services.</span> | This port is for bare-metal deployments only.<br><span style="color: #000000">This is an internal port used for communications between containers. </span><br><span style="color: #000000">This port is reserved for BloxOne services only. This port should not be used by our customers.</span> |
| TCP | 50514 | Data Connector deployment | <span style="color: #000000">This port is reserved for use by BloxOne services.</span> | This port is for bare-metal deployments only.<br><span style="color: #000000">This is an internal port used for communications between containers. </span><br><span style="color: #000000">This port is reserved for BloxOne services only. This port should not be used by our customers.</span> |

> ⚠️ **Note**
> ⚠️ 
> ⚠️ A complete list of allowed IP addresses, subnets, and hostnames is available in a JSON file by clicking this [link](https://infoblox-allowlist.s3.amazonaws.com/infoblox-hostnames-ips.json).

> ⚠️ **Note**
> ⚠️ 
> ⚠️ Infoblox recommends that connectivity from the hosts and services have unrestricted outbound access to the Internet on port 443. This will allow for fewer changes in the future when we change or expand services. For more deployment information, see [<span style="color: #0000ff"><u>*Best Practices for Deploying Hosts*</u></span>](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=DeleteOld&title=Best%20Practices%20for%20Deploying%20Hosts).