This guide will provide basic instruction on setting up and configuring CL Connect's firewall rules.


In order for our API service to communicate with your newly created, publicly facing instance of CL Connect, you must configure the server's firewall in a way that the below ports, IPs and URLs are whitelisted.


Incoming Connections:


Port: 443

Protocol: TCP


IPs:

40.83.183.236 - https://sandboxsts.campuslogic.com/sts/WRAPv0.9/

138.91.226.83 - https://apisandbox.studentverification.com:5443/

23.99.91.55 - https://sts.campuslogic.com/sts/WRAPv0.9/

138.91.242.26 - https://api.verifymyfafsa.com:5443/

137.135.49.41 - https://apisandbox.awardletter.com

104.209.34.227 - https://api.awardletter.com


Outbound Connections:


Ports: 443, 5443

Protocol: TCP


IPs:

23.99.91.55 - https://sts.campuslogic.com/sts/WRAPv0.9/

40.83.183.236 - https://sandboxsts.campuslogic.com/sts/WRAPv0.9/

138.91.226.83 - https://apisandbox.studentverification.com:5443/

138.91.242.26 - https://api.verifymyfafsa.com:5443/

137.135.49.41 - https://apisandbox.awardletter.com

104.209.34.227 - https://api.awardletter.com


Additional AwardLetter Sandbox API

    40.83.179.31

    40.83.181.84

    40.83.183.190

    40.83.183.1


Additional AwardLetter Production API's

    23.99.7.165

    23.99.4.206

    23.99.7.131

    23.99.3.236


2. After your firewall is configured, please run the attached PowerShell script. If you receive a 'True' message, than your instance of CL Connect was able to successfully communicate with our API service.


If the PowerShell script comes back with a 'True' message then please continue to the next step here: Establish Public DNS for CL Connect and Install Valid SSL Certificate.