Skip to main content

Inbound Security Group Rules

This guide explains the ports included in the [Vendor-recommended security group] and the purpose of each port.

Even if you do not use the [Vendor-recommended security group] and create your own Security Group, you must allow the ports listed below to use OvenMediaEngine Enterprise on AWS properly.

Security Group Rules Overview

PortUsage
22/tcpSSH
8080/tcpWeb Console Access
8443/tcpHTTP Web Console Access
9999/udpSRT Input
9998/udpSRT Streaming
4000/udpMPEG-2 TS Input
1935/tcpRTMP Input
80/tcpLow-Latency HLS (LL-HLS; http://) Streaming, WebRTC Signaling (both ingest and streaming; ws://), Thumbnail
443/tcpSecure Low-Latency HLS (LL-HLS; https://) Streaming, WebRTC Signaling (both ingest and streaming; wss://), Thumbnail
3478/tcpWebRTC TCP relay (TURN Server, both ingest and streaming)
10000-10009/udpWebRTC Ice candidate (both ingest and streaming)
9000/tcpOrigin Server (OVT)