365 NETWORK REQUIREMENTS

Purpose

This article outlines all of the networking requirements that are needed to accommodate 365 Retail Markets devices. Please contact your Davians representative or 365 Support at 888-365-6282 or support@365smartshop.com if you have any questions related to this document.

365 Retail Market’s Network Requirements

Connectivity Options

  1. Hardwired – traditionally, we ask that a single cable is dropped in the vicinity of the micro-market location for connectivity to provide the best user experience. This is the preferred method for full size kiosks.
  2. Wireless – we understand the difficulty in wiring up to certain areas within a building thus our devices are able to connect to a passphrase secured WiFi SSID. The devices cannot operate behind a captive portal or a login page.

If neither of these options are suited to your environment or due to regulations ask about our cellular option.

Network Setup Details

If any information is required to connect to your network just let us know and we will accommodate as necessary. Do you require a MAC address to join to the network? Do you want us to set a static IP?

Camera Security

Our markets are supported by a camera security system deployed and supported by Davians. We will install cameras and run cabling as required.

Pico Devices

365 Retail Markets site for Pico Devices

PicoCooler/Market or NanoMarket kiosks require a passphrase-secured, non-Guest WiFi SSID. In addition to this, they cannot operate on a WiFi network with a captive portal or login page.

Service FQDN/IP Ports
Images, style JSON https://static.readytouchpos.com TCP: 443
Android/Google Services commondatastorage.googleapis.com
*.google.com
TCP: 443, 80
Android/Google Services gcm.googleapis.com TCP/UDP: 5228-5230
Auth0 Login Security https://prod-365.us.auth0.com/ TCP: 443
Pushy Service *.pushy.me
*.pushy.io
TCP: 443, 1883
Tally/Security https://tally.prod.365rm.com TCP: 443
Logging, Artifact Storage, Update Delivery https://nanomarketblobs.blob.core.windows.net
http://nanomarketcdn.azureedge.net
TCP: 443
Logging *.instana.io TCP: 443
GL-iNet Goodcloud gslb-us.goodcloud.xyz (52.41.190.83)
rtty-ssh-us3.goodcloud.xyz (3.114.177.237)
TCP: 80, 443
MQTT: 1883, 8883

Security Cameras

Service FQDN/IP Ports
Rhombus Systems Cameras *.rhombussystems.com
*.lan.rhombussystems.com
*.dash.rhombussystems.com*.rhombus.com
*.lan.rhombus.com
*.dash.rhombus.com
HTTPS/443
UDP/53 – DNS
NTP/123 – NTP Time Sync

365RM MM6 Model

v5/MM6 Kiosks

365 Retail Markets site for Kiosks

Service FQDN/IP Ports
Meraki Cloud Communication 1.
2.
3.
4.
5.
64.62.142.12/32
158.115.128.0/19
209.206.48.0/20
216.157.128.0/20
api.meraki.com
UDP: 7351, 9350-9381 (Outbound/Established)
TCP: 80, 443 (Outbound/Established)
Meraki VPN Registry 1.
2.
3.
4.
199.231.78.0/24
64.156.192.245/32
108.161.147.0/24
209.206.48.0/20
UDP: 9350
IPsec VPN 1.
2.
69.39.84.205/32
69.39.84.206/32
UDP: 32768 through 61000
Credit Card Servers 1.
2.
3.
4.
5.
a.
b.
63.241.142.183
63.241.142.205
64.255.204.170
api.apriva.com
https://api2.heartlandportico.com/Hps.Exchange.PosGateway/PosGatewayService.asmx
– Primary IP: 65.118.49.55
– Secondary IP: 35.211.11.79
TCP/UDP: 11079, 11099
App Update Server(API Server) 1. https://smartshop365.jfrog.io/smartshop365
Identity Server 1. https://365pos.365smartshop.com/identityserver/.well-known/openid-configuration
Identity Server Monitor 1. https://365pos.365smartshop.com/365PosApi/api/Pos/isonline
Contents Server 1. https://contents.365retailmarkets.com/
TeamViewer 1. *.teamviewer.com UDP: 5938
TCP: 5938,
443, 80
Time Server 1.
2.
3.
ntp.ubuntu.com
*ubuntu.pool.ntp.org
*centos.pool.ntp.org
UDP: 123
Messaging Queue Gateway 1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
ssl://b-46fc5d10-881e-459c-bcc6-ad3299fae303-1.mq.us-east-2.amazonaws.com
ssl://b-46fc5d10-881e-459c-bcc6-ad3299fae303-2.mq.us-east-2.amazonaws.com
ssl://mq1-prod.365retailmarkets.com
ssl://mq2-prod.365retailmarkets.com
mq.prod.365rm.us
*.prod.365rm.us
mq1.prod.365rm.us
mq2.prod.365rm.us
mq3.prod.365rm.us
mq4.prod.365rm.us
mq5.prod.365rm.us
mq6.prod.365rm.us
mq7.prod.365rm.us
mq8.prod.365rm.us
sqs.us-east-2.amazonaws.com:443 (Dining Only-Order Ahead)
TCP/UDP: 61617, 8155
OS Security & Package Repos 1.
2.
http://ca.archive.ubuntu.com
http://security.ubuntu.com
TCP: 443, 80
Required Websites 1.
2.
3.
https://readytouchpos.com
https://adm.365retailmarkets.com
https://365mobileinventory.com
TCP: 443, 80
Castles Communication (Credit) 1.
2.
365retailmarkets.castlestech.net
8.8.8.8 (Tap-to-pay Functionality)
TCP/UDP: 443
Continuous Router Uplink Status Checks 1.
2.
8.8.8.8
8.8.4.4
UDP: 53
Cisco Umbrella DNS for Meraki Router DHCP assignments 1.
2.
208.67.222.222
208.67.220.220
UDP: 53
GL-iNet Goodcloud 1.
2.
gslb-us.goodcloud.xyz (52.41.190.83)
rtty-ssh-us3.goodcloud.xyz (3.114.177.237)
TCP: 80, 443 &
MQTT: 1883, 8883

Security Cameras

Service FQDN/IP Ports
Rhombus Systems Cameras *.rhombussystems.com
*.lan.rhombussystems.com
*.dash.rhombussystems.com*.rhombus.com
*.lan.rhombus.com
*.dash.rhombus.com
HTTPS/443
UDP/53 – DNS
NTP/123 – NTP Time Sync

365 Retail Markets is at the forefront of payment security in the micro market industry. We consider security as a tenet of every product and service we provide and have a dedicated security staff that monitors and audits for industry best practices. Learn more about 365’s PCI DSS compliance and view the security certification in the attached documents.

  1. 365RM V5 Security Guide for New Clients
  2. 365RM Certificate of Validation PCIDSS 401
  3. 365RM PCI-DSS v4.0.1 Attestation/Report of Compliance (AOC/ROC) – Rev3