Integrate OvrC in to a Corporate network

Below are the security details protocols used by OvrC, and instructions for system administrators to enable the capabilities of OvrC with a corporate firewall.

Foundations:

  1. All OvrC communication is initiated by the device and sent outbound to OvrC. There is no need to alter your firewall to allow inbound traffic.

  2. Communication is executed with WebSocket protocol. All communication to and from OvrC is done over HTTPS using TLS 1.2.

  3. OvrC Pro tunnels have a 30-minute timeout. Subsequent communication requires that the device open a new tunnel, which gets sent to a new random port. This only applies to networks using an OvrC Pro device.

Snap One device requirements:

  • Direction: Outbound

  • Protocol: HTTPS

  • Destination: cloud.ovrc.com

  • Port: 443

  • DNS Lookup: Enabled, port 53

  • TCP: Enabled

Tunneling with an OvrC Pro device:

  • Direction: Outbound

  • Protocol: TCP

  • Destination: tunnel.ovrc.com

  • Port range: 32255-65535