Firewall friendly LoRa gateway implementation?

I’m a IT specialist working in the IT department of a museum in the Netherlands and have multiple (Link Labs and Multitech) gateways in our network. I might be able to help you.
As mentioned in this topic there is only outbound traffic to the Internet, so the firewall should allow outgoing UDP traffic on port 1700 or with the new packet forwarder TCP port 1883. To further reduce possible security risks this firewall rule should have the gateway IP addresses defined as source addresses. This way no other devices on the network can use the open ports. Besides the firewall it is obviously important to properly secure access (SSH, telnet, etc.) to the gateways. In the end adding a LoRaWAN gateway in a IT network is almost the same (in terms of security) as adding a new laptop or PC to the network. But the thing that IT dept are most afraid of/dislike is that they have to support the new devices. They don’t want you calling them every time something goes wrong :wink: So if you can tackle the support issue I don’t see a reason why they won’t add the gateway’s to the IT network.

1 Like