KB: Network Requirements for Altium Products
At a Glance
In environments where outbound network traffic is restricted, the required services must be allowed through firewalls, proxy servers, and security appliances.
This article provides an overview of the network requirements for Altium products and links to detailed articles covering specific deployment scenarios. It serves as the primary reference point for IT administrators planning firewall and proxy configurations.
Solution Details
Overview
Applies to: Altium Designer (AD), Altium 365 (A365), and Altium Enterprise Server (AES)
Tested with: Altium Designer 26.7 and AES 8.1.x. Endpoint requirements may differ for older product versions and may change in future releases.
This article helps IT administrators determine the exact FQDNs and ports that must be allowed through firewalls, proxies, or VPN rules for Altium products to function correctly. Most cloud connections use HTTPS/443; certificate-revocation checks may also require outbound HTTP/80 for CRL and OCSP endpoints. All connections are client-initiated (outbound from the client perspective). No inbound firewall rules are required on end-user machines. Note that WebSocket connections (used for real-time notifications) are upgraded from standard HTTPS and remain outbound-initiate
Critical — SSL/TLS inspection: Traffic to Altium services must bypass SSL inspection, HTTPS inspection, SSL decryption, or break-and-inspect. SSL-intercepted traffic can be interpreted as a man-in-the-middle attack and connections may fail. Configure proxy/firewall exceptions for Altium, Ciiva, Octopart, Nexar, and required AWS S3 endpoints.
Important: Use FQDN-based DNS allowlisting rather than IP addresses wherever possible. IP addresses behind Altium cloud services may change without notice. Only api3.ciiva.com currently has confirmed stable fixed IPs.
Minimum Required Connectivity
The following HTTPS (TCP/443) endpoints represent the minimum required allowlist for most Altium Designer and Altium 365 environments. Additional endpoint requirements for specific regions and features are covered in the companion articles listed below.
| Endpoint | Purpose |
auth.altium.comactionwait.altium.com | Authentication |
*.365.altium.com | Workspace connectivity, regional services, VCS |
portal365.altium.com | Licensing |
store.altium.com | Subscription related operations |
workspaces.altium.com | Workspace discovery |
api3.ciiva.com | Manufacturer Part Search |
api.nexar.com | Supply-chain data |
*.amazonaws.comSee link for region-specific S3 bucket FQDNs | Component data, 3D models, and S3-hosted assets |
cdn.365.altium.com | Workspace web UI assets |
Workspace Regions
Altium 365 workspaces are hosted in multiple geographic regions. In addition to the common endpoints listed above, IT administrators should allow the required region-specific services.
| Workspace region | Protocol/Port | AWS region | Additional region-specific endpoints to allow |
| EU | HTTPS/443 | eu-central-1 | eur.365.altium.comafs-vcs-eu1.365.altium.comccv-eu.s3.eu-central-1.amazonaws.comadworkspaces-eu.altium.comprod-afs-viewer-data-eu1.s3.eu-central-1.amazonaws.com |
| US East | HTTPS/443 | us-east-1 | use.365.altium.comafs-vcs-ue1.365.altium.comccv-us-east-1.s3.us-east-1.amazonaws.comadworkspaces-ue.altium.comprod-afs-viewer-data-ue1.s3.us-east-1.amazonaws.com |
| US West | HTTPS/443 | us-west-2 | usw.365.altium.comafs-vcs-uw1.365.altium.comccv-us-west-2.s3.us-west-2.amazonaws.comadworkspaces-uw.altium.comprod-afs-viewer-data-uw2.s3.us-west-2.amazonaws.com |
| Asia | HTTPS/443 | ap-southeast-1 | asp.365.altium.comafs-vcs-as1.365.altium.comccv-asia.s3.ap-southeast-1.amazonaws.comadworkspaces-as.altium.comprod-afs-viewer-data-as1.s3.ap-southeast-1.amazonaws.com |
Find the Requirements for Your Environment
Choose the article that best matches your deployment scenario or the issue being investigated.
- KB: Altium 365 and Altium Designer Network Requirements - Network, firewall, proxy, and allowlisting requirements for Altium Designer and Altium 365 services, including authentication, licensing, workspace connectivity, version control, Manufacturer Part Search, and supply-chain intelligence services.
- KB: Altium Enterprise Server Network Requirements - Network, firewall, proxy, DNS, and port requirements for Altium On-Prem Enterprise Server deployments and integrations.
- KB: Network Requirements for Altium Designer Installation and Update - Network requirements for installing, updating, and maintaining Altium Designer, including software packages, extensions, and update services.
- KB: Network Requirements for Altium Designer Web Content and Documentation - Network requirements for web-based content and services used within Altium Designer, including documentation, embedded web pages, licensing interfaces, images, avatars, and online help resources.
Note: For questions related to legacy product versions or Altium 365 GovCloud, please contact Altium Support.