Zoom Team Chat Hybrid module firewall requirements


When deploying the Team Chat Hybrid within your environment, your organization's firewall must be configured for outgoing and incoming connections utilizing the ports and destinations below.

How to configure a firewall for the Team Chat Hybrid

ProtocolPortsSource

Destination

TCP

80, 443

Client

Zoom’s IP range

*.zoom.us

*.zoomonprem.com

TCP

80, 443

Zoom Node Server

*.zoom.us

https://zoom-general.s3.amazonaws.com

https://monitoring.*.amazonaws.com

https://acme.digicert.com

*.zoomonprem.com

http://ocsp.digicert.com*

https://ocsp.digicert.com*

TCP

443

Team Chat Hybrid module

*.zoom.us

https://zoom-general.s3.amazonaws.com

https://monitoring.*.amazonaws.com

*.zoomonprem.com

one.digicert.com

acme.digicert.com

HTTPS

443

Load Balancer*

Zoom’s IP range

HTTPS

8008

MongoDB Proxy*

Load Balancer*

HTTPS

8009

ElastiSearch Proxy

Load Balancer*

TCP

27017

MongoDB

MongoDB Proxy

HTTP

8801

ElastiSearch

ElastiSearch Proxy

*Note: The load balancers and database proxies should be configured with a public IP address.

Additional firewall requirements Zoom Node module

For additional firewall information for Zoom Node modules to be deployed on your Zoom Node management server, please see below: