giip
Trust

Customer Network Connectivity

How the FDE Box connects to the customer network — the question every security team asks.

  • Connection — the agent polls the GIIP API over outbound HTTPS (pull); multiple servers are managed by a Gateway over SSH.
  • Ports/firewall — outbound 443 (HTTPS) only; no other ports required.
  • Inbound — none required; the pull model means no inbound connections into the customer network.
  • Direction/encryption — agent → API, one-way outbound, TLS.
  • Cloud account role — scoped to the customer’s request, from read-only to full access.
  • FDE Box form — a physical machine carrying the customer-tailored harness.
Talk to us about a security review