Firewall considerations

You must open firewall ports between individual network components to allow traffic to flow so that Mediasite may function properly.

The following table outlines the ports that are used by Mediasite and the purpose of each. Depending on the intended use of Mediasite in a specific network, some entries may not be necessary or may be modified to further restrict the source and destination. It is possible to change all the port numbers to non-standard ports by modifying settings in the Mediasite applications and IIS servers. The Mediasite Data location as well as storage location for content servers can be configured to use the File Server in the Management Portal. FTP/SFTP is not required when Mediasite is set up to use the File Server.

Mediasite recording, management and playback

Source

Destination

Application Protocol

Protocol

Port

Purpose

Mediasite Video Platform

Database Server

TCP

1433 (In/Out)

Database connection for SQL Server (1433)

Mediasite Video Platform

Directory Server

LDAP or LDAP over SSL

TCP

389 or 636 (In/Out)

LDAP (389) or LDAP over SSL (636) for access to Active Directory or an LDAP directory

Mediasite Video Platform

Active Directory (Global Catalog)

GC or GC over SSL

TCP

3268 or 3269 (In/Out)

Global Catalog LDAP (3268) or Global Catalog LDAP (3269) over SSL for access to an Active Directory set up as a Global Catalog

Mediasite Video Platform

Search

HTTPS

TCP

8004 (In)

Web service connection for search requests

Mediasite Video Platform

Media Server

HTTP

TCP

8095

(In/Out)

Web service connection for creating publishing points

Mediasite Video Platform

Recorder

HTTP

TCP

16992 (In/Out)

Remote power commands e.g. Wake on LAN

Recorder

Media Server and Mediasite Video Platform

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to upload slide images and on-demand media files

Recorder

Media Server

HTTPS

TCP

443 (Out)

Media streaming when performing a live broadcast with push distribution

Recorder

Mediasite Video Platform

HTTPS

TCP

443

Use File Server to upload slide images and on-demand media files

Recorder

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connections to broadcast live/publish on-demand presentations

Recorder 7.3 +

Remote UI/ Mediasite Monitor

HTTP

TCP

8094 and 8095 (In/Out)

WebRTC Recorder Controls

Recorder 7.3 +

Remote UI/ Mediasite Monitor

HTTP

UDP

1024-65535

WebRTC Previews

Note:

The WebRTC preview only works over the local network. It does not work over the Internet.

The preview is provided over random UDP ports chosen when the session is negotiated.

Management Portal

Recorder

HTTP

TCP

8090 (In/Out)

Remote interface connection for Recorder

Management Portal

Recorder

HTTPS

TCP

8091 (In/Out)

Remote interface connection for Recorder over SSL

Management Portal

Recorder

HTTP

TCP

8096 (In/Out)

Web service connection for Recorder control service

Management Portal

Recorder

HTTPS

TCP

8097 (In/Out)

Remote service connection for Recorder control service

Mediasite Deliver

Recorder

Smooth Streaming HTTP

TCP

8090 (In)

Media streaming when performing a live broadcast with pull distribution

Recorder

Mediasite Deliver

RTMP

TCP

1935(In/Out)

Live streaming ingest

 

Media Server

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connections to authorize media playback

Players

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Watching presentation playback, browsing a catalog and managing presentations and the Mediasite System

Players

Mediasite Deliver

Smooth Streaming HTTP or HTTPS

TCP

443 (In/Out)

Deliver media stream using Smooth Streaming or progressive download over HTTP or HTTPS

System Manager

Database Server

TCP

1433 (In/Out)

Database connection for SQL Server (1433)

System Manager

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connections to log in and obtain database connection settings

System Manager

Media and Mediasite Video Platform

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to upload slide images and on-demand media files, Presentation import and export

System Manager

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Use File Server over SSL to upload slide images and on-demand media files, Presentation import and export

System Manager

Directory Server

LDAP or LDAP over SSL

TCP

389 or 636

(In/Out)

LDAP (389) or LDAP over SSL (636) for access to Active Directory or an LDAP directory

System Manager

Active Directory (Global Catalog)

GC or GC over SSL

TCP

3268 or 3269

(In/Out)

Global Catalog LDAP (3268) or Global Catalog LDAP (3269) over SSL for access to an Active Directory set up as a Global Catalog

Search

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connection for search to access presentations and presentation content fields for text indexing

Mediasite Video Platform

Search

HTTPS

TCP

8004 (In)

Web service connection for search requests

Login Form

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Log into Mediasite Video Platform using login credentials

Web Editor

Mediasite Video Platform

HTTPS

TCP

443 (In / Out)

Edit presentations

Web Editor

Mediasite Deliver

Smooth Streaming HTTPS

TCP

443 (In/Out)

Deliver media stream using Smooth Streaming or progressive download over HTTP or HTTPS

Mediasite Job Farm and distributed events

Source

Destination

Application Protocol

Protocol

Port

Purpose

Transcode

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connection for job farm to access on-demand presentations to be transcoded

Transcode

Media Server

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to get on-demand media files for transcoding

Transcode

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Use File Server to get and post on-demand media files for transcoding

Transcode

Mediasite Video Platform

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to post mp3 media files

System Service

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connection for job farm to access and update on-demand presentations, templates, presentation views etc.

System Service

Mediasite Video Platform

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to get standalone player packages and slides as well as post slides from imported presentations

System Service

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Use File Server to get standalone player packages and slides as well as post slides from imported presentations

System Service

Media Server

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to get on-demand media files, upload imported media files or delete media files

System Service

Mediasite Video Platform

HTTPS

TCP

443

Use File Server to upload imported media files

System Service

Database Server

TCP

1433 (In/Out)

Database connection for SQL Server (1433)

OCR

Mediasite Video Platform

HTTPS

TCP

443 (In/Out)

Web service connection for job farm to access on-demand presentations for Slide text extraction

OCR

Mediasite Video Platform

FTP or SFTP

TCP

21 or 22

Passive FTP (21) or SFTP (22) to get slides

OCR

Mediasite Video Platform

HTTPS

TCP

443

Use File Server to get slides

Mediasite Distributed Events (MDE) on all servers

Redis (installed on primary Mediasite Video Platform in high-availability deployment)

 

TCP

6379

(In/Out)

Mediasite pushes messages and communications to other Mediasite Video Platform servers using Redis.