...
Breeze requires outbound internet access on the port TCP 443 only
Breeze does not require any inbound connections and can be deployed on private networks and servers with no public IP addresses
Breeze supports IPv4 and IPv6
If you need to lock down outbound access to a specific IP addressdomain name, contact your Technical Account manager
On AWS, Azure and GCP the instance metadata must be accessible to the Breeze agent (access to 169.254.169.254 should be granted)