x

Square Whitelisted Firewall Rules

Hello!

 

We are in the process of rolling out some terminals on our network.  We are very focused on protecting the WiFi network that the Square POS is connected to by only allowing communication in and out thaat is relevant to the Square POS operations.

 

Does someone know what whitelisted firewall rules should be in place to allow it to work?

 

9,203 Views
Message 1 of 16
Report
1 Best Answer
Square

Best Answer

Hi @jrembold! Welcome to the Seller Community, and kudos on your first post (and what a zinger)! While we don't often hear this request, I do believe I have the information you're looking for. Here are URLs and specific port numbers the Square Register app needs in order to communicate with our servers:

 

 - squareup.com:80 
 - squareup.com:443 
 - api.squareup.com:443

 

PS) If my answer solved your problem, would you mind marking it as "Best Answer"? That'll help the rest of the community find what they're looking for. If not, just write back, and I'll continue to help. Thanks!


Sean
he/him/his
Product Manager | Square, Inc.

View Best Answer >

10,359 Views
Message 2 of 16
Report
15 REPLIES 15
Square

Best Answer

Hi @jrembold! Welcome to the Seller Community, and kudos on your first post (and what a zinger)! While we don't often hear this request, I do believe I have the information you're looking for. Here are URLs and specific port numbers the Square Register app needs in order to communicate with our servers:

 

 - squareup.com:80 
 - squareup.com:443 
 - api.squareup.com:443

 

PS) If my answer solved your problem, would you mind marking it as "Best Answer"? That'll help the rest of the community find what they're looking for. If not, just write back, and I'll continue to help. Thanks!


Sean
he/him/his
Product Manager | Square, Inc.
10,360 Views
Message 2 of 16
Report

HI Sean, 

 

WHat are the steps to whitelist square on CloudFlare (WP site hosted by BlueHost using Woo commerce)? Thanks.Laura

 

8,502 Views
Message 3 of 16
Report

Hi Sean,

 

Thank you for the information!  Can you please verify if it is still current?  Also, I am no sure if you can help with this, but what do you recommened for whitelisiting rules to allow for the necessary iOS updates/paches.  Any help would be grealy appreciated!

7,595 Views
Message 4 of 16
Report
Admin

Hello @earodriquez, Helen here stepping in for Sean - the URLs shared in this thread are still correct.

 

As for your second quesiton you might want to ask your organization's IT department or network specialist. Are you having trouble updating the app?

️ Helen
Seller Community Manager

Did you find help in the Seller Community? Mark a Best Answer to help others.
7,588 Views
Message 5 of 16
Report

Greetings!

 

Due to some square servers having some reputation issues, our firewall blocks images from some of Square's client sites.  Any suggestions on ip blocks and ports to whitelist would be appreciated. 

8,721 Views
Message 6 of 16
Report
Admin

This reply was created from merging an existing thread: “Firewall blocking some square image servers.”

 

Check out Sean's Best Answer above @ReedArt-Imaging. If you need more information let me know!

 

 

️ Helen
Seller Community Manager

Did you find help in the Seller Community? Mark a Best Answer to help others.
8,703 Views
Message 7 of 16
Report

I believe the OP of the thread this was moved to was asking about whitlisting for the POS software.  My concerne is with the image servers for your client's websites.  Their sites load, but the image servers are sometimes blocked and our firewall logs show that those servers have a low trust reputation score. Hence the need to whitelist them.

8,693 Views
Message 8 of 16
Report
Square Community Moderator

Hi @ReedArt-Imaging

 

Are you simply running into images on your website appearing as broken/not loading?

 

If so, was this happening for multiple customers, and do your images load for you when you visit your website yourself? 

 

 

8,679 Views
Message 9 of 16
Report

Hello @EJ_ . Thank you for your response. 

 

We are fine-art printmakers and don't personally have a Square website.  The issue arises when attempting to visit the sites of several of our customers and occaisional prospects who use Square for their websites.

 

 

8,675 Views
Message 10 of 16
Report
Square Community Moderator

Thanks for clarifying @ReedArt-Imaging

 

It sounds like this might be a web browser issue. The following tips usually help with this, so let me know if any of them do the trick for you: 

 

  • Make sure your browser is up to date. If you’re using Internet Explorer, please note that the minimum requirement is Internet Explorer 11. Versions before this may cause you to see errors on our website.
  • Clear the cache on your browser. Access the Help menu of your browser to locate step-by-step instructions.
  • Switch to a supported browser, like Google Chrome.
7,291 Views
Message 11 of 16
Report

That is what I thought at first and I attempted cache clearing as well as fresh browser installs i.e. chrome installed on a machine that never had chrome on it. 

Two things:

  • Repeatable on all machines in our network regardless of browser or OS
  • Firewall logs show the denials. 

 

We can quickly put this to bed if I can get either a list of image servers by FQDN or a list of the ip address blocks to whitelist.

7,283 Views
Message 12 of 16
Report
Square Community Moderator

Thanks for clarifying @ReedArt-Imaging

 

Reach out to our Support Team directly with screenshots and we'll get you in contact with the right team to get this resolved for you. 

6,569 Views
Message 13 of 16
Report

I will reach out directly to support with this, but I want to post this here for completeness.  The issue as it turns out is not related to our firewall at all. It has to do with CORS protocols on the squarespace servers and https not being forced on domain calls. CORS requires cross-domain scripts to be served via https and squarespace apparently does not canonical domain calls to force https.  Soooooo if a domain name is entered into an adress bar without specifying https, a non-scure version of the client site is served and CORS blocks the scripts required to feed images to the user's browser. 

 

As mentioned, I will contact the support team directly with this.  Thanks for eveyrone's time

6,469 Views
Message 14 of 16
Report
Alumni

Thanks for updating us @ReedArt-Imaging!

6,467 Views
Message 15 of 16
Report

We too are having similar problems making firewall rules for our Square POS. We went through whitelisting about a dozen domains and it kept getting blocked at another. The application would not launch until we left it fully open. It would be nice to have a list of ALL FQDN necessary for Square POS to run. We added rules for *.squareup.com and it kept hanging trying to hit google and AWS etc and we gave up. 

6,364 Views
Message 16 of 16
Report