URL Allowlists
Specops Password Auditor uses the following endpoints for Breached Password Protection and certificate revocation checks. Allow access through your proxies and firewalls.
Note
It is strongly recommended to use URL or hostname-based allowlists, as IP addresses may change over time.
Breached Password Protection
Allow access to the following endpoints to use Breached Password Protection:
| URL | Description | Protocol | Port |
|---|---|---|---|
| https://breach-protection.specopssoft.com | Web endpoint | TCP | 443 |
| https://download.specopssoft.com | Web endpoint | TCP | 443 |
Certificate Revocation Checks
To support certificate revocation list (CRL) checks, allow access to the following endpoints:
| URL | Protocol | Port |
|---|---|---|
| https://*.c.lencr.org | TCP | 443 |
| http://*.c.lencr.org | TCP | 80 |
| https://crl.godaddy.com | TCP | 443 |
| http://crl.godaddy.com | TCP | 80 |