This site is for Avast Business products only. For articles on AVG Business products, see AVG Business Help. If you are in the right place but cannot find what you are looking for, please contact Avast Business Support for further assistance.

Firewall Requirements

This Article Applies to:

  • Avast Business On-Premise Console

 

For overall functionality, and to enable the Antivirus client and/or the management console to authenticate/update, you must allow certain ports and URL addresses through your firewall or proxy server.

Geoblocking

Avast web services are hosted in many countries around the world. Therefore, we do not recommend geoblocking in your firewall settings.

If geoblocking is necessary, we recommend you set URL Allow rules to supercede geoblocking, so Avast traffic can still be allowed.

Ports

  • UDP 53 – Secure DNS services (only if using Real Site component)
  • TCP 80 – Internet vulnerability checks and feature updates
  • TCP/UDP 443* – Encrypted communication
  • TCP 8080*, 8090* – Communication between console and clients within local network
  • TCP 4158 – Mirror, for local updates within local network
  • TCP 7074 – Remote Deployment within local network
  • TCP 7500 - For push notification services

*These are the default ports, which the administrator can modify during or after setup if needed. Note that any changes should be reflected in the firewall configuration.

URLs

  • *.avast.com
  • *.avcdn.net
  • URLs required by application vendors