FireBrick Firewall - Steam Client: Difference between revisions
Appearance
Content deleted Content added
CrazyTeeka (talk | contribs) |
CrazyTeeka (talk | contribs) m PayPal (1) |
||
| (10 intermediate revisions by 2 users not shown) | |||
| Line 1: | Line 1: | ||
This firewall allows both inbound and outbound traffic to reach the steam client, all other traffic is rejected. |
This firewall allows both inbound and outbound traffic to reach the steam client, all other traffic is rejected. It is written for gaming systems that will only be using the steam client. |
||
=Static DNS= |
=Static DNS= |
||
| Line 7: | Line 7: | ||
<syntaxhighlight lang=xml> |
<syntaxhighlight lang=xml> |
||
<dns resolvers="2001:8b0::2020 2001:8b0::2021 217.169.20.20 217.169.20.21"> |
<dns resolvers="2001:8b0::2020 2001:8b0::2021 217.169.20.20 217.169.20.21"> |
||
<host name="api.steampowered.com" ip=" |
<host name="api.steampowered.com" ip="23.205.213.78"/> |
||
<host name="cdn.akamai.steamstatic.com" ip="23.63.98.26 23.63.98.32"/> |
<host name="cdn.akamai.steamstatic.com" ip="23.63.98.26 23.63.98.32"/> |
||
<host name="cdn.store.steampowered.com" ip="23.63.98.26 23.63.98.32"/> |
<host name="cdn.store.steampowered.com" ip="23.63.98.26 23.63.98.32"/> |
||
| Line 31: | Line 31: | ||
<host name="steamclouddub.blob.core.windows.net" ip="191.235.193.40"/> |
<host name="steamclouddub.blob.core.windows.net" ip="191.235.193.40"/> |
||
<host name="steamcommunity-a.akamaihd.net" ip="23.63.99.219 23.67.255.202"/> |
<host name="steamcommunity-a.akamaihd.net" ip="23.63.99.219 23.67.255.202"/> |
||
<host name="steamcommunity.com" ip="23. |
<host name="steamcommunity.com" ip="23.63.99.219 23.67.255.202"/> |
||
<host name="steamstore-a.akamaihd.net" ip="23.63.99.208 23.63.99.240"/> |
<host name="steamstore-a.akamaihd.net" ip="23.63.99.208 23.63.99.240"/> |
||
<host name="store.akamai.steamstatic.com" ip="23.63.98.26 23.63.98.32"/> |
<host name="store.akamai.steamstatic.com" ip="23.63.98.26 23.63.98.32"/> |
||
<host name="store.steampowered.com" ip=" |
<host name="store.steampowered.com" ip="23.205.213.78"/> |
||
<host name="t.paypal.com" ip="173.223.190.173"/> |
<host name="t.paypal.com" ip="173.223.190.173"/> |
||
<host name="www.paypal.com" ip="173.223.190.173"/> |
<host name="www.paypal.com" ip="173.223.190.173"/> |
||
| Line 89: | Line 89: | ||
protocol="6" |
protocol="6" |
||
action="accept"/> |
action="accept"/> |
||
<rule name=" |
<rule name="PayPal Payments" |
||
target-ip="2.22.133.163 2.22.139.27 23.65.43.145 66.225.197.197 66.235.148.64 93.184.220.29 173.223.190.173" |
target-ip="2.22.133.163 2.22.139.27 23.65.43.145 66.225.197.197 66.235.148.64 93.184.220.29 173.223.190.173" |
||
target-port="80 443" |
target-port="80 443" |
||
| Line 95: | Line 95: | ||
action="accept"/> |
action="accept"/> |
||
<rule name="Valve Software" |
<rule name="Valve Software" |
||
target-ip="103.10.124.0/ |
target-ip="103.10.124.0/23 146.66.155.0/24 155.133.224.0/19 162.254.192.0/21 205.196.6.0/24 208.64.200.0/22" |
||
target-port="80 443" |
target-port="80 443" |
||
protocol="6" |
protocol="6" |
||
| Line 149: | Line 149: | ||
*br01.broadcast.fra.steamstatic.com (Randomly Selected) |
*br01.broadcast.fra.steamstatic.com (Randomly Selected) |
||
*br01.broadcast.lax.steamstatic.com (Randomly Selected) |
*br01.broadcast.lax.steamstatic.com (Randomly Selected) |
||
*br01.broadcast.lon.steamstatic.com (Randomly Selected) |
|||
*br01.broadcast.ord.steamstatic.com (Randomly Selected) |
*br01.broadcast.ord.steamstatic.com (Randomly Selected) |
||
*br01.broadcast.sto.steamstatic.com (Randomly Selected) |
*br01.broadcast.sto.steamstatic.com (Randomly Selected) |
||
*br02.broadcast.fra.steamstatic.com (Randomly Selected) |
*br02.broadcast.fra.steamstatic.com (Randomly Selected) |
||
*br02.broadcast.lax.steamstatic.com (Randomly Selected) |
*br02.broadcast.lax.steamstatic.com (Randomly Selected) |
||
*br02.broadcast.lon.steamstatic.com (Randomly Selected) |
|||
*br02.broadcast.ord.steamstatic.com (Randomly Selected) |
*br02.broadcast.ord.steamstatic.com (Randomly Selected) |
||
*br02.broadcast.sto.steamstatic.com (Randomly Selected) |
*br02.broadcast.sto.steamstatic.com (Randomly Selected) |
||
*br03.broadcast.fra.steamstatic.com (Randomly Selected) |
*br03.broadcast.fra.steamstatic.com (Randomly Selected) |
||
*br03.broadcast.lax.steamstatic.com (Randomly Selected) |
*br03.broadcast.lax.steamstatic.com (Randomly Selected) |
||
*br03.broadcast.lon.steamstatic.com (Randomly Selected) |
|||
*br03.broadcast.ord.steamstatic.com (Randomly Selected) |
*br03.broadcast.ord.steamstatic.com (Randomly Selected) |
||
*br03.broadcast.sto.steamstatic.com (Randomly Selected) |
*br03.broadcast.sto.steamstatic.com (Randomly Selected) |
||
*br04.broadcast.fra.steamstatic.com (Randomly Selected) |
*br04.broadcast.fra.steamstatic.com (Randomly Selected) |
||
*br04.broadcast.lax.steamstatic.com (Randomly Selected) |
*br04.broadcast.lax.steamstatic.com (Randomly Selected) |
||
*br04.broadcast.lon.steamstatic.com (Randomly Selected) |
|||
*br04.broadcast.ord.steamstatic.com (Randomly Selected) |
*br04.broadcast.ord.steamstatic.com (Randomly Selected) |
||
*br04.broadcast.sto.steamstatic.com (Randomly Selected) |
*br04.broadcast.sto.steamstatic.com (Randomly Selected) |
||
| Line 172: | Line 176: | ||
*cdn.akamai.steamstatic.com |
*cdn.akamai.steamstatic.com |
||
PayPal Payments: |
|||
*store.steampowered.com |
*store.steampowered.com |
||
*ocsp.digicert.com |
*ocsp.digicert.com |
||
| Line 201: | Line 205: | ||
==IP Reference== |
==IP Reference== |
||
This documents what range of IP's belong to which CDN node and hostname. |
This documents what range of IP's belong to which CDN node and steam hostname. |
||
cdn.akamai.steamstatic.com:<br> |
cdn.akamai.steamstatic.com:<br> |
||
| Line 210: | Line 214: | ||
media4.steampowered.com:<br> |
media4.steampowered.com:<br> |
||
repo.steampowered.com:<br> |
repo.steampowered.com:<br> |
||
store.akamai.steamstatic.com: |
store.akamai.steamstatic.com: |
||
*a1507.d.akamai.net |
*a1507.d.akamai.net |
||
*23.63.98.26 (Primary) |
*23.63.98.26 (Primary) |
||
| Line 227: | Line 231: | ||
*104.86.111.137 |
*104.86.111.137 |
||
steamcommunity-a.akamaihd.net: |
steamcommunity-a.akamaihd.net: |
||
*a1697.g.akamai.net |
*a1697.g.akamai.net |
||
*23.63.99.219 (Primary) |
*23.63.99.219 (Primary) |
||
| Line 234: | Line 238: | ||
*104.86.110.75 |
*104.86.110.75 |
||
steamstore-a.akamaihd.net: |
steamstore-a.akamaihd.net: |
||
*a1737.g.akamai.net |
*a1737.g.akamai.net |
||
*23.63.99.208 (Primary) |
*23.63.99.208 (Primary) |
||
| Line 241: | Line 245: | ||
*104.86.110.81 |
*104.86.110.81 |
||
steamcdn-a.akamaihd.net: |
steamcdn-a.akamaihd.net: |
||
*a1843.g.akamai.net |
*a1843.g.akamai.net |
||
*23.67.255.200 (Primary) |
*23.67.255.200 (Primary) |
||