Roon ARC IP Whitelist

Roon Core Machine

NUC11TNB, i5 CPU, 4 cores/8 threads, 32gb memory, Sfp 1gb, thunderbolt 10gb Sfp+, Synology DS1512+

Networking Gear & Setup Details

Unifi UDM Pro SE > Watchguard T40 > Unifi Ent 8 SW > Unifi Aggregator > NUC + Synology @ 10Gb

Connected Audio Devices

Roon > Musica Capella streamer -or- USB ASIO > Holo May Kte

Number of Tracks in Library

29000 Tracks

Description of Issue

Would like to further lock down access to Roon ARC Port 55000. Wondering if a source IP whitelist is available that I can reference and tie the ARC port to.

Also, the Roon ARC IP in the Canada Geo seems to be 184.151.190.229. However, the return traffic from Roon back to that address via port 55000 seems to fail.

2023-09-11 14:42:02 Deny 1x.1x.1x.12 184.151.190.229 46367/tcp 55000 46367 WireLess-Mixed Firebox tcp syn checking failed (expecting SYN packet for new TCP connection, but received ACK, FIN, or RST instead). 1440 64 (Internal Policy) proc_id=“firewall” rc=“101” msg_id=“3000-0148” tcp_info=“offset 8 A 1461533826 win 63233” geo_dst=“CAN”*

I’ve excepted this particular address but would appreciate protecting the entire ARC IP range.
Is this information available/published?

Thanks

Hi @J-in-TO,

Functionality with a hardware security apparatus like the Watchguard T40 is outside of Roon ARC’s officially supported product scope.

Unfortunately, while we’d like to help, this post will need to live in #tinkering unless you’re willing to troubleshoot ARC configuration without that device in the environment.

Hi Connor
The WG is just a firewall, nothing else.

Anyhow, I’m only asking for a list of the Roon ARC servers so I can whitelist them.
Assuming of course that the IPs are set/static.

Thanks
John

This topic was automatically closed 45 days after the last reply. New replies are no longer allowed.