Deploy Service Connectors

Follow these recommendations:
Note

Note

When Secure Socket Layer (SSL) decryption is in use, the traffic does not pass through the service connector.
  • Packaged deployment:

    Recommended OS

    Ubuntu 22.04 or 24.04

    VMware OVA

    Note

    Note

    ARM based installations are not supported.
  • Dockerized deployment: compatible with multiple operating systems; requires only Docker to be installed.
  • Port Availability (outbound)- The following ports must be allowed oubound from the Service Connector:
    • WireGuard Encryption Protocol: 51820, 51821(UDP)
    • IPsec Encryption Protocol: 4500 (UDP)
    • TURN Service Ports: 3478, 3479 (UDP)
  • Port Availability (inbound) - If the connector and the user are in the same network, open the following ports for inbound requests:
    • WireGuard encryption Protocol: 51820 (UDP)
    • IPsec Encryption Protocol: 4500 (UDP)
  • Minimum hardware requirements: CPU: 4 Ram: 16 GB
Use this task to deploy a service connector which:
  • Connects to private, cloud-hosted application services and facilitates secure data exchange between the user and these application services
  • Performs data transformation and routing between the user and application services
  • Can be hosted in private data center or public cloud such as AWS, Entra ID, and GCP
  1. If deploying a Service Connector outside of the onboarding process, go to Resources > Service Connectors from the navigation pain on the left, if not go to the Deploy Service Connector tab.
  2. Select Deploy Service Connector > Private Hosted from the drop-down on the right.
    1. Read the Guidelines.
    2. Select Next to configure the connector.
      The Deploy Private Hosted Service Connector pop-up window displays.
    3. For the Connector Name, enter at least three alphanumeric characters
    4. Select an existing site or add a site for Associate Site.
    5. Enter a size for Set MTU (Maximum Transmission Unit).
      The MTU value is the maximum size of a data packet that an internet-connected device can accept in bytes. The MTU size ranges from 1200 to 1400 bytes.
    6. Select Next.
    7. Read the information and follow the deployment procedure for the service connector.
    8. Select Close.
When deployment finishes, the service connector status turns green and displays Up.

Your enterprise applications and networks are now securely accessible to the service connector.

Once you have completed the resources part of the onboarding, you can continue to Applications and Application Groups.