Production

Overview

Use this guide as a reference for deploying BPI instances configured using Shuttle into enterprise environments.

Network Security

The following ingress and egress rules should be configured on the appropriate network devices.

Ingress

ComponentScopeTCP Port(s)Description

NATS (PRVD Stack)

WAN

4222

NATS endpoint

Egress

ComponentIP/CIDRTCP Port(s)Description

Docker

3.234.192.18

443

GitHub

192.30.252.0/22 185.199.108.0/22 140.82.112.0/20 143.55.64.0/20 20.201.28.148/32 20.205.243.168/32 102.133.202.248/32 20.248.137.49/32 20.207.73.85/32 20.27.177.116/32 20.200.245.245/32 20.233.54.49/32 192.30.252.0/22 185.199.108.0/22 140.82.112.0/20 143.55.64.0/20 20.201.28.151/32 20.205.243.166/32 102.133.202.242/32 20.248.137.48/32 20.207.73.82/32 20.27.177.113/32 20.200.245.247/32 20.233.54.53/32 20.201.28.152/32 20.205.243.160/32 102.133.202.246/32 20.248.137.50/32 20.207.73.83/32 20.27.177.118/32 20.200.245.248/32 20.233.54.52/32 140.82.121.33/32 140.82.121.34/32 140.82.113.33/32 140.82.113.34/32 140.82.112.33/32 140.82.112.34/32 140.82.114.33/32 140.82.114.34/32 192.30.255.164/31 20.201.28.144/32 20.205.243.164/32 102.133.202.243/32 20.248.137.52/32 20.207.73.86/32 20.27.177.117/32 20.200.245.241/32 20.233.54.55/32

443

S3

18.34.0.0/19

54.231.0.0/16

52.216.0.0/15

18.34.232.0/21 16.182.0.0/16

3.5.0.0/19 44.192.134.240/28 44.192.140.64/28

443

Axiom

34.199.54.166

443

Ident

3.90.74.52

443

NChain

52.200.105.254

443

Privacy

44.196.201.20

443

Vault

23.21.125.77

443

pgrok

3.234.192.18

1024 - 65535

Last updated