JSS Firewall Policies Setting for APNs.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 12-02-2021 06:54 PM
Hi,
A customer will set up their two JSS servers from internal network to DMZ, they will also have a load balancer (F5) before two JSS Servers in DMZ, so the Infosec team asks the following question:
Could they only open the network access policies between the F5 and APNs except the network access polices between JSS Servers and APNs?
Any feedback will be appreciated.
Nan
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 12-02-2021 08:36 PM
Load balancer is for the connections initiated by remote clients, the APNs traffic is initiated by Jamf Pro Servers. For the Firewall, if the APNs traffic's initiation source IP is JSS server's local IP, then they should open network access for JSS servers.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 12-02-2021 10:56 PM
Thanks Steven.
