This document is intended for network administrators, particularly firewall and proxy security administrators in organizations that need to access Health Commerce System (HCS) and UPHN api. It will help you configure your network to support the secure connection to HCS and UPHN api.
This document primarily focuses on the network requirements of accessing HCS and UPHN api from Internet browser via HTTPS and UPHN api. Most organizations deploy an internet firewall, or internet proxy and firewall, to restrict and control the HTTP based traffic that leaves and enters their network. Follow the firewall and proxy guidance below to enable access to HCS and UPHN api from your network. If you are using a firewall only, note that filtering traffic using IP addresses is NOT recommended, as the IP addresses used by HCS and UPHN api are dynamic and may change at any time, the IP addresses are also not used exclusively by HCS and UPHN api but also other customers of our service provider. If your firewall supports URL filtering, configure the firewall to allow the HCS and UPHN api destination URLs listed here, an * shown at the beginning of a URL (e.g., *.health.ny.gov) indicates that services in the top level domain and all subdomains must be accessible, which will also help to ensure that users in your organization can access other DOH systems in addition to HCS and UPHN api.
If your firewall does not support URL filtering and must use IP filtering, configure the firewall to allow the destination IPs listed here but please notice that the IP addresses used by HCS and UPHN api are dynamic and may change at any time therefore you need to continuously review and update your firewall accordingly.