Network Firewall Access Specifications
1) The following file extensions must be allowed through your
network and firewall:
File Type
DEC
EMD
Graphics
Rate Manager
CCD
Snippet File
Data Capture File
Rate File
2) The following top level domains must also be accessible through
your network and firewall:
Any URL containing the following:
pb.com
distservp1.pb.com
cometservp1.pb.com
acctservp1.pb.com
pbdlsp1.pb.com
pbdlsp1t.pb.com
s3.amazonnaws.com
(PC Meter Connect)
pbgdspdlp1a.pb.com
NOTE:
URLs accessed by your Pitney Bowes system may contain the above
strings anywhere within the URL. Firewalls must therefore be set to allow
traffic to any URL containing the above domains. Your firewall may need to be
configured using "wildcards", for example *pb.com*
8| DM Series Networking Guide
File Extension
.dcz
.zmd
.gar
.rmz
.bin
.GAU
.Kj1
.Rte
dlsdlp1T.pb.com
dlsdlp1z.pb.com
dlsdlp1.pb.com
dlsdlp1b.pb.com
pbdlst1.pb.com
dlsdlp1.pb.com
pbsmartpostage.pb.com
3) If IP Addresses must be used, Pitney Bowes recommends the firewall
be set to allow unrestricted access to the full blocks of Pitney Bowes IP
Address Ranges listed below:
152.144.128.0 ‐ 152.144.128.255
172.28.106.0 ‐ 172.28.107.255
172.31.224.0 ‐ 172.31.224.255
199.231.32.0 ‐ 199.231.47.255
209.85.128.0 ‐ 209.85.255.255
4) Active and Passive FTP
Firewall on Active FTP –Ports that should be opened on Server and
Client side:
o Server: Port 20 for data & Port 20 for Commands
o Client: Ports >1023
Firewall on Passive FTP – Ports that should be opened on Server
and Client side:
o Server: Port 21 for Commands & Ports >1023
o Client: Ports >1023
5)
Alternatives for restricted FTP Protocols
Some meters support using HTTPS as an alternative to FTP. If you are using PC
Meter Connect, access the "Internet Settings" menu from the application and
select HTTPS mode. If your meter does not support HTTPS, the option will be
greyed out.
6) Ports and Protocols required
Type
Protocol
Port
DNS
UDP
53
HTTP
TCP
80
HTTPS
TCP
443
Function
Postage by Phone & Web Services
Postage by Phone & Web Services
Postage by Phone
Software & Rate Updates
Graphics Uploads
Firewall must be set to ACTIVE mode and to
allow ephemeral ports