All Collections
Mailroom
Workplace Network Settings
Workplace Network Settings

Learn about the required network settings for Verkada Guest and Mailroom features

Updated over a week ago

This article outlines the required settings that your Verkada Guest tablets need to be able to communicate with the printer through the LAN and speak with Verkada Command. Phones utilizing Guest and Mailroom features need to be able to communicate with Verkada Command to operate properly.

Requirement: Verkada devices are incompatible with LANs that require the use of proxy servers or that require Secure Socket Layer (SSL)/Transport Layer Security (TLS) inspection. If either are in use, a bypass for all Verkada devices must be implemented for Verkada devices to communicate with Command.

IP address

Guest tablets need an IPv4 address to communicate to Verkada Command through the internet. They use Dynamic Host Configuration Protocol (DHCP), User Datagram Protocol (UDP) ports 67 and 68, to obtain their IP addresses and network configurations.

If you want to have a specific IP address on your viewing station, set a DHCP reservation using the device’s Media Access Control (MAC) address (found on the device's label).

Domain Name System

Guest tablets and phones use the Domain Name System (DNS) server to resolve Verkada’s fully qualified domain names (FQDN) to IP addresses to communicate with them. Your DHCP server tells the sensor where the DNS server is on the network and the sensor communicates using UDP port 53.

Note: DNS over HTTPS (DoH) is currently not supported.

Firewall settings

Verkada devices require access to many endpoints to have the full-featured experience. Many customers may want to restrict devices to only communicate with the specific required endpoints.

These are the general domains to allow, applicable for all organization-regions:

  • *.verkada.com - UDP/123 + TCP+UDP/443

  • 34.216.15.26 - UDP/123

  • 3.1.77.0/24 - UDP/10000-20000

  • 3.104.90.0/24 - UDP/10000-20000

  • 3.112.80.0/24 - UDP/10000-20000

  • 3.122.181.0/24 - UDP/10000-20000

  • 18.228.249.0/24 - UDP/10000-20000

  • 34.203.250.0/23 - UDP/10000-20000

  • 35.156.191.128/25 - UDP/10000-20000

  • 52.215.127.0/24 - UDP/10000-20000

  • 54.65.63.192/26 - UDP/10000-20000

  • 54.169.127.128/26 - UDP/10000-20000

  • 54.171.127.192/26 - UDP/10000-20000

  • 54.172.60.0/23 - UDP/10000-20000

  • 54.244.51.0/24 - UDP/1024-65535

  • 54.252.254.64/26 - UDP/10000-20000

  • 177.71.206.192/26 - UDP/10000-20000

If your firewall does not allow wildcard masking, or you prefer to have the entire FQDN of the endpoint in your firewall rules, these are the domains to allowlist, by region:

Region: United States

Note: Your region is selected when you create an organization in Command.

  • vdoorman.command.verkada.com - TCP+UDP/443

  • vdoorman.prod1.command.verkada.com - TCP+UDP/443

  • api.global-prod.control.verkada.com - TCP+UDP/443

  • relay.global-prod.control.verkada.com - TCP+UDP/443

  • vconductor.global-prod.command.verkada.com - TCP+UDP/443

  • api.control.verkada.com - TCP+UDP/443

  • relay.control.verkada.com - TCP+UDP/443

  • index.control.verkada.com - TCP+UDP/443

  • firmware.control.verkada.com - TCP+UDP/443

  • update.control.verkada.com - TCP+UDP/443

  • time.control.verkada.com - UDP/123

  • user.pyramid.verkada.com - TCP+UDP/443

  • device.pyramid.verkada.com - TCP+UDP/443

  • nlb.verkada.com - TCP+UDP/443

  • device-nlb.verkada.com - TCP+UDP/443

  • 34.216.15.26 - UDP/123

  • 3.1.77.0/24 - UDP/10000-20000

  • 3.104.90.0/24 - UDP/10000-20000

  • 3.112.80.0/24 - UDP/10000-20000

  • 3.122.181.0/24 - UDP/10000-20000

  • 18.228.249.0/24 - UDP/10000-20000

  • 34.203.250.0/23 - UDP/10000-20000

  • 35.156.191.128/25 - UDP/10000-20000

  • 52.215.127.0/24 - UDP/10000-20000

  • 54.65.63.192/26 - UDP/10000-20000

  • 54.169.127.128/26 - UDP/10000-20000

  • 54.171.127.192/26 - UDP/10000-20000

  • 54.172.60.0/23 - UDP/10000-20000

  • 54.244.51.0/24 - UDP/1024-65535

  • 54.252.254.64/26 - UDP/10000-20000

  • 177.71.206.192/26 - UDP/10000-20000

Region: Europe

Note: Your region is selected when you create an organization in Command.

  • vdoorman.prod2.command.verkada.com - TCP+UDP/443

  • api.global-prod.control.verkada.com - TCP+UDP/443

  • relay.global-prod.control.verkada.com - TCP+UDP/443

  • vconductor.global-prod.command.verkada.com - TCP+UDP/443

  • api.prod2.control.verkada.com - TCP+UDP/443

  • relay.prod2.control.verkada.com - TCP+UDP/443

  • index.prod2.control.verkada.com - TCP+UDP/443

  • update.control.verkada.com - TCP+UDP/443

  • vconductor.prod2.command.verkada.com - TCP+UDP/443

  • time.control.verkada.com - UDP/123

  • 34.216.15.26 - UDP/123

  • 3.1.77.0/24 - UDP/10000-20000

  • 3.104.90.0/24 - UDP/10000-20000

  • 3.112.80.0/24 - UDP/10000-20000

  • 3.122.181.0/24 - UDP/10000-20000

  • 18.228.249.0/24 - UDP/10000-20000

  • 34.203.250.0/23 - UDP/10000-20000

  • 35.156.191.128/25 - UDP/10000-20000

  • 52.215.127.0/24 - UDP/10000-20000

  • 54.65.63.192/26 - UDP/10000-20000

  • 54.169.127.128/26 - UDP/10000-20000

  • 54.171.127.192/26 - UDP/10000-20000

  • 54.172.60.0/23 - UDP/10000-20000

  • 54.244.51.0/24 - UDP/1024-65535

  • 54.252.254.64/26 - UDP/10000-20000

  • 177.71.206.192/26 - UDP/10000-20000

Related resources


Need more help? Contact Verkada Support

Did this answer your question?