9 Firewall Changes

On July 29, 2011, Oracle is simplifying the delivery of Oracle Solaris and Oracle Linux updates. If your Enterprise Controller is connected to the Internet directly or through an HTTP proxy, no changes are required. If you have explicit firewall openings to allow your Enterprise Controller to reach getupdates.oracle.com, you must add several new addresses to your firewall rules.

Firewall Changes

The following sites must be accessible through your firewall:

Table 9-1 IP Address and Port Requirements

Site IP Address Port

updates.oracle.com

*

Port 443

aru-akam.oracle.com

*

Port 80

a248.e.akamai.net

*

Port 443

inv-cs.sun.com

192.18.110.18

Port 443

getupdates.oracle.com

192.18.110.9

Port 443

inv-cs.oracle.com

192.18.110.10

Port 443

support.oracle.com

141.146.54.16

Port 443

hs-ws1.oracle.com

192.18.110.11

Port 443

www.oracle.com

96.17.111.33 and 96.17.111.49

Port 80


* This site provides local IP addresses to optimize download speed. You must locally resolve the IP addresses and use that local address in your firewall rules. Since DNS IP address resolution can change over time, override DNS to always use the same addresses for these hosts so that they match your firewall changes.