Requirements

reference

Working with Firewalls

The following URLs and access types need outgoing permissions in firewalls in order for Mender to work correctly:

Hosted Mender access: Devices, APIs and browser access

  • https://hosted.mender.io
  • https://*.hosted.mender.io

Artifact storage access: Devices, APIs and browser access

  • https://s3.amazonaws.com/hosted-mender-artifacts
  • https://hosted-mender-artifacts.s3.amazonaws.com
  • https://c271964d41749feb10da762816c952ee.r2.cloudflarestorage.com

Amazon S3 IAM policies

Only required for on-premise installation

A minimum policy set to use an Amazon S3 bucket to store Mender Artifacts is:

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Action": [
                "s3:GetAccessPoint",
                "s3:ListAllMyBuckets"
            ],
            "Effect": "Allow",
            "Resource": "*"
        },
        {
            "Action": [
                "s3:*"
            ],
            "Effect": "Allow",
            "Resource": "arn:aws:s3:::BUCKET-NAME"
        },
        {
            "Action": [
                "s3:*"
            ],
            "Effect": "Allow",
            "Resource": "arn:aws:s3:::BUCKET-NAME/*"
        },
    ]
}

We welcome contributions to improve this documentation. To submit a change, use the Edit link at the top of the page or email us at .