Learn to generate the IP range of the Active Update servers. The IP addresses can be used in firewall policies to allow Deep Security servers to download pattern file and scan engine updates through network firewalls.
Akamai provides localized cache servers that are geographically located close to you. Since Akamai's server IP addresses changes depending on the country you are located and even under different network conditions, it is best to use the DNS name "trendmicro.georedirector.akadns.net" or "activeupdate.trendmicro.com.edgekey.net" as the basis for your firewall rule.
For example, you prefer an IP address and you are using Deep Security 12.5, you have to perform the following:
- Ping the primary update source of your Deep Security, e.g. Ping "ipv6-iaus.activeupdate.trendmicro.com".
You should then be redirected to "e19270.dscd.akamaiedge.net", our third-party content provider.
- Change the last octet of the IP address you got to ".255".
This should give you the address block for your servers. This works best if they are connecting using a single ISP.
If an error occurs, please contact Trend Micro Technical Support.