
CGW-MB Installation and Users’ Manual | P/N:LS10248-000HW-E | REV.G | JUL/31/2022
21
For Preventing Potential Risks
Security Recommendations
3.2.3 Software and Firmware Updates
System software and firmware updates may be offered from time to time.
Ensure that your local representative:
•
Has the up-to-date contact details, and
•
Periodically visits the Honeywell web site for up-to-date product information
3.2.4 Viruses and Other Malicious Software Agents
Malicious Software include the following:
•
Viruses
•
Spyware
•
Worms
•
Trojans
These may be present in a computer using a Monitoring Station Software or in a USB pen
drive, which is used to copy data to computer.
The intrusion of malicious software agents can result in performance degradation, loss of
system availability, and the capture, modification, or deletion of data — including
configuration and device logs.
USB devices from other infected systems on the network or malicious Internet sites can
also transfer viruses.
3.2.5 Network and Firewall Setup
Inbound (In) Port: The port another computer uses to access a CLSS Gateway mainboard
functionality. An application on the CLSS Gateway mainboard will be actively listening on
this port for client connections.
Outbound (Out) Port: The CLSS Gateway mainboard uses outbound ports to connect to
Internet or
CLSS Site Manager
. The Cloud services in the
CLSS Site Manager
will be
listening on these ports waiting for a connection from the CLSS Gateway mainboard.
By default, block all inbound and outbound connections and allow only the ports listed in
the below table:
The
CLSS Pathway
device sends alarms to
CLSS Site Manager
, using the below endpoints:
Port Number
Type
IN/OUT
Purpose/Remarks
443
HTTPS - TCP Bidirectional NOC APIs communications with a Supplier
Cloud and
CLSS Site Manager
1433
TCP
Bidirectional NOC Server and SQL DB private network-based
communications
9000
TCP
Bidirectional Pathway devices and NOC communications
9000
UDP
Bidirectional Pathway devices and NOC heartbeat
communications
6000 - 6030 TCP
Bidirectional Monitoring station and NOC communications
Region
All End-points
West US
• https://fireclssnocwus.honeywell.com/clssnocalarmrcvr/
• https://fireclssnocwus.honeywell.com/clssnocapisrv/
East US
• https://fireclssnoceus.honeywell.com/clssnocalarmrcvr/
• https://fireclssnoceus.honeywell.com/clssnocapisrv/