To ensure reliable operation of all Timetabling Solutions desktop and cloud applications, please allow the following domains, ports, and protocols.
1. Required Ports & Protocols
| Port | Protocol | Notes |
|---|---|---|
| 443 | HTTPS | Mandatory for all authentication, API calls, publishing, and cloud apps |
| 80 | HTTP | Redirects only – should not be blocked |
| 443 (wss://) | Secure WebSockets | Used by cloud apps for real-time updates |
2. Required Domains (Must Be Allowed)
These should be whitelisted, bypassed from SSL inspection, and allowed through firewall filtering.
Timetabling Solutions
Microsoft Identity Platform (Authentication)
Microsoft WebView2 Runtime / Edge Components
Azure Platform Dependencies (App Services, Storage, CDN)
Cloudflare (Edge Network & DNS)
3. Optional but Recommended
These are not always required, but some components may rely on them:
4. SSL Inspection Bypass (Critical)
Do not decrypt or inspect HTTPS traffic to these domains.
SSL proxies can break authentication, publishing, and token refresh.
5. DNS Filtering (If using DNS security products)
Ensure the following are resolvable and not blocked or rewritten:
6. Published Summary Version (for Schools / IT Teams) Required:
Allow outbound HTTPS (443) to *.timetabling.education and all Microsoft identity services.
Do not perform SSL inspection on timetabling.education or Microsoft login domains.
Ensure DNS filtering does not block or rewrite the Timetabling Solutions or Microsoft identity domains.