Avaya Cloud Services endpoints use the following types of traffic:
TLS traffic is used for both HTTPS and WSS. Any TLS-inspection should support these protocols or have an exception for the listed hosts.
TCP and HTTP tunneling are not supported for Audio and Video.
The following hosts and protocols should be unrestricted for all Avaya Cloud Services features to work as intended. Whitelisting based on IP address is not recommended since they can change dynamically. In addition, HTTP headers such as Authorization should be left intact.
Hosts |
Ports |
Protocol |
Description |
*.avayacloud.com |
80, 443 |
HTTPS, WSS |
Messages |
*.esna.com |
80, 443 |
HTTPS |
Mobile authentication |
ASN of 15169 |
5228, 5229, 5230 |
TCP |
Push notification |
accounts.google.com |
80, 443 |
HTTPS |
SSO |
login.microsoftonline.com |
80, 443 |
HTTPS |
SSO |
login.salesforce.com |
80, 443 |
HTTPS |
SSO |
*.avaya.com |
80, 443 |
HTTPS |
SSO |