WatchGuard Support Center

Knowledge Base - Article

000017307
 URLs used by Panda services

Information
For endpoints and users to connect to Panda Security products, your network must allow connections to the Panda URLs listed below and in the attached text file. 

Note: The attached XLS file provides a comprehensive list of URLs and their permutations.

Exceptions

To allow connections to Panda products and services through the Firebox, add WebBlocker exceptions and blocked sites exceptions for these URLs:
  • *.pandasecurity.com
  • aether100proservicebus.servicebus.windows.net
  • aether100pronotification.table.core.windows.net
  • content.ivanti.com (for Path Management only)
  • *.globalsign.net 
  • *.globalsign.com
  • *.digicert.com
  • *.ctmail.com (for URL filtering and anti-spam protection)
Note: Fireware v11.12 to Fireware v12.5.3 include a default blocked sites exception for *.ctmail.com to allow connections from spamBlocker. If your configuration already includes this default exception, you do not have to add it again. 

For more information on how to add WebBlocker exceptions, see About WebBlocker Exceptions.

For more information on how to add blocked sites exceptions, see Create Blocked Sites Exceptions

Domain Name Rules

In addition, we recommend you configure proxies with domain name rules to allow connections to Panda domains. For more information, see HTTPS-Proxy: Domain Name Rules.

All traffic to Panda services uses TCP port 443 (HTTPS, websocket) or 80 (HTTP). Configure your Firebox to allow outbound connections on these ports.

Default exceptions and domain name rules for Panda products and services will be added to a future release of Fireware. For more information on Panda URLs, see this Panda Security Technical Support article.
File Name File Type Last Modified (UTC)
panda_urls TEXT 05/11/2020 5:41 PM
Aether URL Requirements EXCEL_X 06/03/2020 3:29 PM