Network Requirements

The Teleport service is configured to use only standard ports 22, 80, and 443, to help with access wherever users are.

Additional configuration at the local user site may be required to allow outgoing connections. The diagram below shows the TCP ports and destination hosts used.

Currently the tsh application does not support use of proxies (HTTP_PROXY , etc).  The developers are actively working on a fix for this which will be available in a forthcoming release.
Workaround options are to use a TCP proxy wrapper app, such as proxychains-ng, or to make use of the Web Shell facility.

The diagram describes the set up for the Teleport instance installed at ECMWF's Data Centre in Reading.  The instance that will be installed in the Bologna Data Centre will use the same ports but different hosts.