Customer Network Connectivity
How the FDE Box connects to the customer network — the question every security team asks.
- Connection — the agent polls the GIIP API over outbound HTTPS (pull); multiple servers are managed by a Gateway over SSH.
- Ports/firewall — outbound 443 (HTTPS) only; no other ports required.
- Inbound — none required; the pull model means no inbound connections into the customer network.
- Direction/encryption — agent → API, one-way outbound, TLS.
- Cloud account role — scoped to the customer’s request, from read-only to full access.
- FDE Box form — a physical machine carrying the customer-tailored harness.