I´ve recently moved all my IoT, mobile, streaming, etc. devices to a separate VLAN including my Soundtouch speaker setup. This separate VLAN has rather strict firewall rules accessing the internet. Apart from HTTP(S), SMTP and IMAP most protocols are blocked. The Soundtouch speakers still work like a charm and can be controlled via the Soundtouch app on the mobile devices.
Unfortunately software updates cannot be downloaded or installed.
Which protocols and/or ports have to be configured at the firewall all in all for the speakers and the app?
It would have been helpful if the list would have included information on what ports are used for local network communication and what ports need pass-through internet capability. Did that now to the best of my knowledge...
123 is LAN to WAN, WAN to LAN (the speakers send a request to a network time server (time.windows.com or the likes) and receive a response packet back.
17008 is LAN to LAN, seems to be like a keep alive for the app to the speaker.