Network access for database integrations
Configure the network access that a gateway needs to service database integrations.
A gateway needs two kinds of outbound network access to service a database integration: access to Okta Privileged Access, and access to each database instance that it services. Configure this access using your environment's networking controls. Each provider names them differently, such as security groups, firewall rules, or network security groups. For the privileges that the integration user requires on each supported database type, see Database integration user privileges.
| Connection | Required access |
|---|---|
| Gateway to Okta Privileged Access | Outbound access on port 443 to both
your-opa-team-name.pam.okta.com and
your-opa-team-name.pam.oktapreview.com. |
| Gateway to each database instance | Outbound access to each database instance that the gateway services, on the port that the instance listens on. |