Firewall blocks scanner appliance traffic to Qualys SOC

Document created by kb-author-1 Employee on May 19, 2010Last modified by eschamp on Oct 28, 2011
Version 4Show Document
  • View in full screen mode


If a firewall blocks outbound traffic from the scanner appliance, the scanner appliance cannot communicate to the QualysGuard Security Operations Center (SOC) on a regular basis. In this case the appliance is not functional - scan tasks will fail and software updates will not occur.



To allow traffic from the scanner appliance to the QualysGuard SOC, create a firewall rule to allow communication from the scanner appliance IP address to the Qualys web server hosts on port 443 at your SOC. These host names must be DNS resolvable by the scanner appliance.


Shared Platform SOC:

Your SOC is set up for your subscription and may or may not be related to your geography. The SOC server URLs for your account are displayed in the QualysGuard web application when one or more scanner appliances are included in your account. To view the SOC server URLs, navigate to Help > About.


@Customer SOC:

Customers using the QualysGuard @Customer solution will have custom URLs to connect to for their dedicated platform.