Network Ports & Firewall Rules Reference
This reference lists all TCP and UDP network ports used by RUSEON Core for stream ingestion, client delivery, telemetry, and clustering.
1. Network Port Matrix
| Port | Protocol | Traffic Direction | Service / Purpose | Configuration Key |
|---|---|---|---|---|
8080 (or 443) | TCP | Inbound | HTTP Web UI, REST API, WHEP Signaling, HLS Playlists | server.port |
8554 | TCP / UDP | Inbound / Outbound | RTSP Re-Streaming Server (Egress to downstream VMS) | rtsp.port |
50051 | TCP | Inbound | gRPC Server (AI Bounding Box Ingest & Frame Stream) | grpc.port |
50000–50100 | UDP | Inbound / Outbound | WebRTC ICE Media Transport (Pion SRTP audio/video) | webrtc.port_range_* |
554 | TCP / UDP | Outbound | RTSP Client Ingest (Connecting to external IP cameras) | Dynamic client port |
1883 / 8883 | TCP | Outbound | MQTT Client (Publishing events to IoT broker) | mqtt.broker |
2. Linux Firewall Configuration Commands
Using UFW (Ubuntu / Debian):
bash
# Allow HTTP management & streaming
sudo ufw allow 8080/tcp
# Allow RTSP restreaming server
sudo ufw allow 8554/tcp
# Allow gRPC AI ingestion
sudo ufw allow 50051/tcp
# Allow WebRTC ICE UDP media port range
sudo ufw allow 50000:50100/udp
# Reload firewall
sudo ufw reloadUsing Firewalld (RHEL / Rocky Linux / AlmaLinux):
bash
sudo firewall-cmd --permanent --add-port=8080/tcp
sudo firewall-cmd --permanent --add-port=8554/tcp
sudo firewall-cmd --permanent --add-port=50051/tcp
sudo firewall-cmd --permanent --add-port=50000-50100/udp
sudo firewall-cmd --reload