Overview
This describes the requirements that need to be permitted in order to access each HENNGE One service when access from within the company is restricted by firewalls, proxies, etc.
Table of Contents
- Service FQDN (URL)
- Service IP Address
- IP Address Types That Can Access the Service
Service FQDN (URL)
The FQDN / port to be used for permitting access to each service are as follows.
Please configure the FQDN and port for the service you are using, and permit communication for access accordingly.
- When configuring access permission settings using a URL, please add "https://" at the beginning of the FQDN and "/*" at the end.
- For wildcard specifications (FQDNs that include *), since the destination FQDN changes dynamically, wildcard permission settings are required.
※ Since this service is provided in a SaaS format, subdomains may be added or changed without prior notice in order to maintain optimal performance and security.
For this reason, the specifications are designed on the assumption that registration will be done using wildcards rather than individual settings.
| Service Name | FQDN | Port Used |
|---|---|---|
| HENNGE Access Control | *.ssso.hdems.com *.verify.ssso.hdems.com ssso-v2015-02.s3.amazonaws.com ssso-spcfg-logo.s3.amazonaws.com japaneast-0.in.applicationinsights.azure.com *.auth.hennge.com cybertrust.deviceid.ne.jp www.hennge.com teachme.jp support.hdeone.com |
TCP/443 |
| *.lencr.org crl.deviceid.ne.jp ocsp.deviceid.ne.jp |
TCP/80 | |
| HENNGE Connect | *.connect.hennge.io | TCP/443 |
| HENNGE Connect Agent | *.ngrok.com *.ngrok-enterprise.com update.equinox.io *.ngrok-agent.com dns.google.com s3.amazonaws.com *.connect.hennge.io |
TCP/443 |
| crl.ngrok-agent.com | TCP/80 | |
| HENNGE Mesh Network | hennge.runetale.com pkgs.runetale.com |
TCP/443 |
| HENNGE Email DLP |
console.mo.hdems.com host.gross.hdems.com hennge-dlp-history.s3.amazonaws.com *.transfer.hennge.com |
TCP/443 |
| HENNGE Domain Protection | console.smtps.jp | TCP/443 |
| HENNGE Email Archive | console.hdems.com | TCP/443 |
| HENNGE Email Archive Modern | archive.hennge.com | TCP/443 |
| HENNGE Secure Transfer ※ HENNGE Secure Download (for users without a HENNGE One contract) |
*.transfer.hennge.com *.hennge-one.smtps.jp |
TCP/443 |
| HENNGE File DLP | *.saascore.app | TCP/443 |
| HENNGE Cloud Protection | *.f-secure.com *.withsecure.com |
TCP/443 |
| HENNGE Tadrill | *.tadrill.com | TCP/443 |
|
HENNGE Endpoint & Managed Security Agent HENNGE Endpoint & Managed Security Elements Connector |
http://*.fsapi.com | TCP/80 |
| https://*.fsapi.com https://ac3ujg1ortm4c-ats.iot.ap-northeast-1.amazonaws.com https://ane1-famp-prd-system-transfer.s3.ap-northeast-1.amazonaws.com https://ane1-fsdiag-upload.s3.ap-northeast-1.amazonaws.com https://c3hquxgihnj763.credentials.iot.ap-northeast-1.amazonaws.com |
TCP/443 | |
| https://ac3ujg1ortm4c-ats.iot.ap-northeast-1.amazonaws.com | TCP/8883 | |
| MDR Management Portal MDR Ticket Management System |
https://hennge.css-snet.co.jp/ https://hennge-p.css-snet.co.jp/ |
TCP/443 |
| HENNGE One Launcher | launcher.hennge.com | TCP/443 |
| Reverse IP Lookup Filter in Customer Environment | *.amazonaws.com | TCP/443 |
Service IP Addresses
Since HENNGE One services operate with dynamically changing IP addresses, you need to allow access by specifying the range of all global IP addresses displayed at this link.
Please note that the list provided at the above link may be changed without prior notice in the future.
Types of IP Addresses That Can Access the Service
| Service Name | Service Screen/Feature | IPv4 Address | IPv6 Address |
|---|---|---|---|
| HENNGE Access Control | User Portal Evaluation of source IP address during access control (※) |
✔️ | - |
| Admin Console | ✔️ | ✔️ | |
| Public API | ✔️ | ✔️ | |
| HENNGE Password Manager | All | ✔️ | ✔️ |
| HENNGE Mesh Network | All | ✔️ | - |
| HENNGE Email DLP | All | ✔️ | - |
| HENNGE Domain Protection | All | ✔️ | - |
| HENNGE Email Archive Classic | All | ✔️ | - |
| HENNGE Email Archive Modern | All | ✔️ | ✔️ |
| HENNGE Secure Transfer | All | ✔️ | - |
| HENNGE Tadrill | All | ✔️ | - |
| HENNGE File DLP | All | ✔️ | - |
| launcher.hennge.com | All | ✔️ | ✔️ |
※ Currently, only IPv4 is supported as a condition for access control by HENNGE Access Control.
We are working on development to support IPv6 addresses in the future.
Translation Disclaimer
This article has been automatically translated from the original Japanese version for your convenience.
While we strive to ensure accuracy, we cannot guarantee its reliability or completeness.
In the event of any discrepancies or questions regarding the content, the official Japanese version shall prevail.