SphereShield for Teams Proxy On-Prem - Customer Requirements
This is an example of an email with customer requirements for Teams proxy on-prem requirements
Hello <Customer>
Below are instructions on what resources to prepare before the deployment: an SQL server (it can be SQL Express), an IIS server, and a server for the Bastion proxy filter.
What are the Bastion Proxy System Requirements?
What are the SQL Database System Requirements?
What are the Admin Portal System Requirements?
Below are firewall rules to configure for SphereShield. Follow only rows tagged "Sphereshield for Teams Proxy"
Which Firewall Ports Should Be Opened for SphereShield for Teams/Zoom?
This is a general topology of SphereShield
SphereShield for MS Teams / Webex topology Proxy data flow
Teams traffic from clients will be forwarded to Bastion proxy which uses our certificate to sign for Microsoft Teams URL's, so all clients need to install the AGAT root CA certificate.
How to install client certificate - Trusted Root CA for Teams / Webex Proxy
To be able to sign in to SphereShield admin portal you need to grant permissions to AGAT Azure application
How to configure the SphereShield Azure App for Sign in and groups?
Teams traffic from needs to be redirected to Bastion proxy as per below
FW Teams Proxy PAC + File explanations - SphereShield CASB Knowledge Base - Confluence
Below download links for SphereShield package and components
https://downloads.agatsoftware.com/SphereShield.Setup-V......... (edit with last package)