Description
Network filtering within enterprise intranets may cause difficulties when working with Confluent Support. All hosts within the confluent.io and confluent.cloud domains (i.e. *.confluent.io, *.confluent.cloud) should be added to an allowlist in any network filtering or firewall application on your network. This article outlines which websites are needed to ensure access to Confluent resources and support.
Applies to
Confluent Support Portal
Resolution
| Website | Description |
|---|---|
|
Main Confluent website |
Main web presence of Confluent. This site is used to access documentation, blogs, and Confluent Platform package downloads. |
|
Confluent Support Portal |
The Support Portal provides the ability to submit and view currently opened cases. The Confluent Knowledge Base is also accessed via this site. The confluent.zendesk.com subdomain also needs to be allowed to prevent issues with signing into Support Portal. |
|
Support Organization Portal |
Please ensure that confluent-support.app domain is allowlisted in your network to access this portal. |
|
Universal login page* |
The Universal Login Page provides centralized login for other Confluent web applications, such as the Support Portal. Without access to this site, you will not be able to log in to the Customer Support Portal. |
|
Secure File Transfer gateway |
Confluent customers upload logs through the support portal using a secure gateway. Ensure access to the secure-transfer.confluent.io domain to be able to upload logs and other information to the Support Portal. |
*Note: If not using the recommended *.confluent.io wildcard whitelisting, you will need to also add login-static.confluent.io and login-service.confluent.io in addition to the main login.confluent.io site to the allowlist.
Secure File Transfer
When filing a ticket from the Submit a Request link, you will see the attachment option at the bottom with a security lock if you have the proper access to the Secure File Transfer gateway.
If you see "Add file" with no secure lock along with the error text box below, please work with your IT department to get access to the Secure File Transfer gateway.
Please add the following domains to the allowlist to prevent issues with attaching files securely:
https://secure-transfer.confluent.io
https://static-secure-transfer.confluent.io
https://static-confluent.sendsafely.com
https://confluent.sendsafely.com
https://sendsafely-dual-region-us.s3-accelerate.amazonaws.com
https://sendsafely-dual-region-eu.s3-accelerate.amazonaws.com
https://sendsafely-tri-region-us.s3-accelerate.amazonaws.com
https://sendsafely-tri-region-eu.s3-accelerate.amazonaws.com
https://sendsafely-tri-region-ap.s3-accelerate.amazonaws.comFeatures of the Secure File Transfer gateway
Confluent uses SendSafely to encrypt and transfer files. This provides the following benefits:
- Access control: Uploaded files are only accessible by Confluent employees providing support. This ensures that only authorized individuals have access to the files.
- Audit history: SendSafely tracks which users access files. This is particularly useful for customer logs with sensitive information.
- Verification process: When Confluent sends SendSafely attachments to customers, the system requires verification that the user is allowed to see the attachment. This adds an extra layer of security to the file sharing process.
- Support for large files: File sizes up to 100 GB are supported.
- Automatic file retention: SendSafely attachments have a file retention period automatically set to 120 days.