● Command Center Server uses the HTTPS Web protocol, but it is not a Web browser: it cannot be used to
access anything other than the HP Cloud, and it is not aected by Web browser vulnerabilities.
● Communication between Command Center Client and Server is by HTTPS, and the port range is HTTPS
8443–8450 and HTTP 8080–8090.
● Command Center MQTT broker and API Proxy port range are 1883–1891 and 8090–8099 respectively.
Encryption
● The Command Center software transmits device data to HP Cloud servers using HTTPS. The identity of the
servers is veried, and the communication between the Command Center software and the HP Cloud
servers is encrypted using the Advanced Encryption Standard (AES) algorithm in Cipher Block Chaining
(CBC) mode, which ensures that the device data cannot be viewed or
modied by any third party.
Device and software security
● Full security audits and vulnerability scans are performed on the Command Center software before release.
● Printers and supporting devices run on dedicated hardware and rmware that are not aected by typical
personal-computer vulnerabilities.
● Full security audits and vulnerability scans are performed on all HP device rmware before release, and
rmware update les are digitally signed by HP and veried by the HP device before installation.
Data condentiality
● Device non-anonymous data are never shared with unauthorized third parties without the customer’s
consent. The HP Cloud stores the device data in HP authorized data centers, which meet strict HP security
standards, and the system is periodically audited to help ensure the highest level of data security.
Proxy conguration
● Command Center uses the system proxy conguration.
Networking requirements
● Only outgoing HTTPS ports (typically TCP 443) need to be opened in the perimeter rewall; no incoming
network ports need to be opened.
● The Command Center Server computer needs to allow incoming trac to the Command Center Server
application so that Command Center Clients can connect to the server.
● To give Command Center Server access to the HP Cloud, you should check that your network is not blocking
the following endpoints:
– www.printos.com, port 443 (or https://www.printos.com)
– 3dpconf.heleni.me, port 443 (or https://3dpconf.heleni.me)
– *.amazonaws.com, port 443 (or https trac to any host on the domain amazonaws.com)
– h19002.www1.hp.com, port 21 (or ftp://h19002.www1.hp.com)
● Connection to the Internet must be DSL or better.
● To minimize disconnections:
ENWW Networking requirements 39