Firewall Rules for MedicalDirector Software

Required firewall rules that allow essential communication between MedicalDirector software.

Following is a list of communications that are required to occur between MedicalDirector software components and external systems. Rules must be added to your firewall to allow these communications.

Source (by MedicalDirector Computer Role) Source (by Application) Destination

* IP addresses are provided for clarity but subject to change. URLs should be used.

Destination Port Protocol Comment Applicability
Server\Standalone

Workstation

Mobile

~\Health Communication Network\Common\Maintenance.exe Broadcast (local network) 255.255.255.255 1434 UDP

Microsoft SQL Browser Service.

Uses the Microsoft SQL Browser Service to populate database properties. This broadcast message cannot span subnets so, if your MedicalDirector databaseserver is on a separate subnet to your workstation/mobile machines, database properties will not populate.

Required.
Server\Standalone

Mobile

~Microsoft SQL Server\90\Shared\sqlbrowser.exe Any. 1434 UDP

Microsoft SQL Browser Service

Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe api.hcn.com.au/prompts/ 443 HTTPS Required for Drug/Patient Support prompts and the Sidebar.
api.hcn.com.au 80 HTTP
Server\Standalone

Workstation

Mobile

~Health Communication Network\HCN Automatic Update\Hcn.Common.Updates.Server.exe update.hcn.com.au

*113.11.232.124

443 HTTPS Automatic Update notifications. Required when using the Automatic Update functionality (enabled by default).
NA ICMP
download.hcn.com.au 80 HTTP Automatic Update external downloads.
MedicalDirector Server ~Health Communication Network\HCN Automatic Update\Server\HCN Automatic Updates Service.exe 8121 HTTP Automatic Update internal downloads.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe www3.medicareaustralia.gov.au/pcert/soap/services/ 443 HTTPS MyHealth Record access and management. Required when using Clinical and accessing MyHealth Records.
services.ehealth.gov.au/doesPCEHRExist
services.ehealth.gov.au/gainPCEHRAccess
services.ehealth.gov.au/getDocumentList
services.ehealth.gov.au/removeDocument
services.ehealth.gov.au/uploadDocument
services.ehealth.gov.au/getDocument
Server\Standalone ~DDI\MDXi\Mdxi.DeliveryService.exe lookup.mdexchange.com.au

*113.11.235.174

*113.11.235.176

443 HTTPS MDExchange Server hosted by MedicalDirector. Required when using Clinical and MD Exchange

Required if you use ePrescribing.

myaccount.mdexchange.com.au

*113.11.235.174

*113.11.235.176

upload.mdexchange.com.au

*113.11.235.174

*113.11.235.176

download.mdexchange.com.au

*113.11.235.174

*113.11.235.176

Server\Standalone ~Health Communication Network\Communication Services\Md.Wcf.HostService.exe Machine with workstation/mobile role.

net.tcp://<FQDN or IP if no DNS Suffix>:<First available port in defined range>/Workstation Service

8090 - 8190 TCP Communication services. Required when using Clinical 3.17 or later.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe MedicalDirector database server.

net.tcp://<FQDN or IP if no DNS Suffix>:<First available port in defined range>/ServerService

~Health Communication Network\Communication Services\Md.Wcf.Utils.CommunicationServices.exe Machine with workstation/mobile role.

net.tcp://<FQDN or IP if no DNS Suffix>:<First available port in defined range>/Workstation Service

Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe https://medorders-v1.clinicallabs.com.au (for Clinical / Pracsoft 3.18) 443 HTTPS eOrders: A system for securely ordering SDS-based pathology and cytology requests electronically from Abbott Pathology, Dorevitch Pathology, Gippsland Pathology, Laverty Pathology, QML Pathology, Tasmanian Medical Laboratories, Western Diagnostic Pathology. Required when using Clinical and eOrders.
https://medorders.clinicallabs.com.au (for Clinical / Pracsoft 4.0)
https://eorder.apps.sonichealthcare.com (Sonic)
https://www.healthshare.com.au (HealthShare)
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe http://<MedicalDirector Server>:9080/AduroFormSession 9080-9090 HTTPS Healthlink. Required when using Clinical and Healthlink.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe microsoft.com 443 HTTPS Clinical Sidebar platform. Required when using Clinical and the Sidebar.
digicert.com
usertrust.com
mixpanel.com
starfieldtech.com
globalsign.net
globalsign.com
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe api.healthshare.com.au 443 HTTPS Healthshare Referrals widget.

Comprehensive, up-to-date, searchable directory of Australian practitioners.

Required when using Clinical and the Sidebar.
mdsidebar.medebridge.com.au UHG Medical Request widget.

Quick and efficient way to submit medical requests to life insurance companies.

https://medicaldirectorplugin.medebridge.com.au UHG Medical Request widget.
medicaldirector.com 80 HTTP ePiP Shared Health Summary Calculator.

Enable the practice to know if they are achieving the maximum shared health summary upload target for Practice Incentives Program (PIP) requirements.

Required when using Clinical and the Sidebar.
Insights widget.

Practice population health tool that aims to assist the practice in improving the quality of patient health outcomes and practice accreditation.

Required when using Clinical and the Sidebar.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe mdpromptsvr.australiaeast.cloudapp.azure.com 80 HTTP Clinical Prompts widget.

Displays Clinical prompts in the sidebar as an alternative to pop-up messages.

Required when using Clinical and the Sidebar.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe No exclusion required. Not Applicable Not Applicable Clock widget.

Analogue Clock.

Required when using this widget.
Calendar widget.

Calendar with month view.

Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe mydrgo.com.au 443 HTTPS MyDr Go widget.

Quickly issue medical documents to your patients via video consultation.

Required when using this widget.
www.net-health.com.au 443 HTTPS Net-Healthdata widget.

Tele-monitoring widget to help practitioners monitor the vital signs data of the patient. Very useful for patients with chronic conditions.

Required when using this widget.
www.tabnostics.com.au 443 HTTPS Tabnostics widget.

A program to download tests performed with the Tabnostics Table.

Required when using this widget.
app.medicalnote.com.au 443 HTTPS MedicalNote Importe widget.

Medical note importer.

Required when using this widget.
phn.sentreferral.com 443 HTTPS Sent Referral widget.

Streamlines the process of preparing and sending referrals for your patients.

Required when using this widget.
mdcarewidgetprod.azurewebsites.net 443 HTTPS MedicalDirector Care widget.

Easy-to-use tool to create and view care plans. Minimise data entry errors as templates auto-fill with the most current patient values.

Required when using this widget.
ncsr.gov.au 443 HTTPS NCSR widget.

Allows you to access and submit bowel and cervical National Program screening data National Cancer Screening Register.

Required when using this widget.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Pracsoft\Pracsoft.exe MedicalDirector database server. 61613 TCP ActiveMQ based MedicalDirector Messaging Service. Used by Surgical Partners plugin. Required when using Pracsoft 3.17 or later.
Server\Standalone ~Java\jre6\bin\java.exe Machines running Pracsoft.
Server\Standalone

Workstation with Tyro Terminal Connected

~Health Communication Network\Pracsoft\Pracsoft.exe 58.181.64.0 - 58.181.71.255 10443 HTTPS Tyro Network Connectivity Requirements. Refer tohttps://www.tyro.com/selftest/. Required when using Pracsoft or Bluechip with Easyclaim.
58.181.64.0/21

netmask 255.255.248.0

www.tyro.com/ 80 HTTP
merchant.tyro.com 443 HTTPS
integration.tyro.com
integration.ha.tyro.com
integrationdownloads.tyro.com
terminaldownloads.tyro.com
Server\Standalone

Workstation

Mobile

~Health Communication Network\Medical Director\MDW3.exe

~Health Communication Network\Pracsoft\Pracsoft.exe

~Health Communication Network\PracSoft\PSApptBook.exe

~Health Communication Network\Common\SMS\SmsScheduledAgentService.exe

~Health Communication Network\Bluechip\HcnBCSmsService.exe

api.messagenet.com.au/ 443 HTTPS MedicalDirector SMS Scheduling Services and applications.

Ad-hoc SMSs are sent from the applications.

Scheduled messages are sent by the SMS Services.

Required by sites with a MessageNet account using MedicalDirector SMS capabilities.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Pracsoft\Pracsoft.exe

~Health Communication Network\Medical Director\MDW3.exe

~Health Communication Network\Blue Chip\bluechip.exe

https://healthclaiming.api.humanservices.gov.au 443 HTTPS Medicare requests, for example, OPV checks, Australian Immunisation Register. Required for PRODA and other Medicare interactions.
Server\Standalone

Workstation

Mobile

~Health Communication Network\Pracsoft\Pracsoft.exe

~Health Communication Network\Medical Director\MDW3.exe

~Health Communication Network\Blue Chip\bluechip.exe

https://proda.humanservices.gov.au/

https://proda-clinical-prodaservice-prod.azurewebsites.net

https://proda-bluechip-prodaservice-prod.azurewebsites.net

443 HTTPS Retrieving PRODA authentication token. Required for PRODA interactions.