Description: Learn about the network requirements for Commerce Engine deployments, including bandwidth, ports, outbound hostnames, and firewall considerations.
Note: This article covers network requirements for the current Commerce Engine. For BroadPOS-based network requirements, see Commerce Engine Network Requirements (BroadPOS).
Commerce Engine Network Requirements
This document reviews the network requirements for Commerce Engine to function properly.
- The Internet connection must be reliable and have a minimum of 5 Mbps upload and download speeds.
- The wireless requirement for the device is simple, and the following network types are supported:
-
WiFi: 802.11 b/g/n, 2.4GHz, 802.11ac b/g/n, 5GHz
Important:: 2.4GHz is recommended for Verifone V660p devices
-
WiFi: 802.11 b/g/n, 2.4GHz, 802.11ac b/g/n, 5GHz
- The bandwidth requirement is minimal, and normal operations can function unaffected with as little as a 64 Kbps connection.
Important: The minimal bandwidth will affect the update process because the Commerce Engine application is about 10-20 MB.
Terminal Management Service
To allow the PAX device to communicate with the Terminal Management Service (TMS), ensure outbound communication is allowed to the following.
PAXSTORE
- DNS Name: t.paxstore.us
- Port: 9080
- Port: 3000
Shift4 TMS
Production
Static IPs
- IP Address: 64.114.18.124
- IP Address: 209.115.237.228
- Port: 443
DNS Names
- eigen-tms-cdn.shift4-global.com
- wsr-mtls.shift4payments.com
- tms1.shift4api.net
- tms2.shift4api.net
- Port: 443
UAT
Static IPs
- IP Address: 208.181.56.20
- Port: 443*
- Port: 27003*
DNS Names
- tms1.shift4test.com
- tms2.shift4test.com
- Port: 443
* * For the UAT environment, there are two ports used for the same IP Address to simulate host flipping. Ensure port 27003 is open.
Shift4 Gateway
To access the Shift4 Gateway, ensure outbound communication is allowed to the following:
- Production DNS Name: api.shift4api.net
- UAT DNS Name: api.shift4test.com
- Port: 443
Device Cloud
To access Device Cloud, ensure outbound communication is allowed to the following:
- Production DNS Name: commerce-engine-cluster.shift4payments.com
- UAT DNS Name: commerce-engine-cluster-ce.shift4payments.com
- Port: 5672
InterCard Gateway (girocard processing)
- IP Address: 194.54.0.33
- IP Address: 194.54.2.33
- Port: 58370
POS/PMS Interface
To communicate with the POS/PMS interface, ensure outbound communication is allowed to the following:
- IP Address: Address of the device running the OPI/SPI or REST interface
- Port: 8084 (OPI/SPI)
- Port: 8085 (REST)
Error Reporting
In order for Commerce Engine to send error reporting data to Shift4, the customer’s firewall must allow outbound communication to the following:
- IP Address: 34.120.195.249
Feature Flags
For Shift4 to remotely enable/disable support for specific features, ensure outbound communication is allowed to the following:
- https://clientstream.launchdarkly.com
- https://clientsdk.launchdarkly.com
- https://app.launchdarkly.com
- https://mobile.launchdarkly.com
What's Gone Compared to Legacy
The legacy Commerce Engine required additional ports that are no longer needed:
- Port 9100: Local Admin UI (functionality is now inside Commerce Engine or managed via Shift4 TMS)
- Port 9366: SAF module (now handled internally by Commerce Engine)
Merchant firewalls are simpler as a result.
Verifying Connectivity on the Device
Use the Secret Menu Connectivity Test to confirm the device can reach Shift4 without relying on what the POS is reporting.
- On the idle screen, tap the upper-right corner five times.
- Select Connectivity Test.
Comments
0 comments
Please sign in to leave a comment.