Table 7-14
Firewall rules for setups with redundant 5620 SAM Servers.
(continued)
Protocol
From port
On
To port
On
TCP
Any
Servers
9010
Servers
TCP
Any
Servers
11800
Servers
TCP
11800
Servers
Any
Servers
TCP
Any
Servers
12010
Servers
TCP
12010
Servers
Any
Servers
TCP
Any
Servers
12300-12307
Servers
TCP
12300-12307
Servers
Any
Servers
TCP
> 32768
Servers
> 32768
Servers
When there is a firewall at the SAM management interface (NIC 1 on
“Distributed 5620 SAM Server/Database deployment with multiple network interfaces”
(p. 8-4)
) and 5620 SAM Auxiliary Statistics / Call Trace Servers are configured, then the
following rules need to be applied:
Table 7-15
Firewall rules for traffic coming into the 5620 SAM Server(s) from the
5620 SAM Auxiliary Statistics / Call Trace Server(s).
Protocol
From port
On
To port
On
TCP
Any
Auxiliary Server(s)
12300-12307
Server(s)
TCP
12300-12307
Auxiliary Server(s)
Any
Server(s)
TCP
Any
Auxiliary Server(s)
12800
Server(s)
TCP
12800
Auxiliary Server(s)
Any
Server(s)
When there is a firewall at the SAM management interface (NIC 1 on
“Distributed 5620 SAM Server/Database deployment with multiple network interfaces”
(p. 8-4)
) and NAT is configured, then the following rules need to be applied. Services
require the use of public addresses.
5620 SAM Database firewall and NAT rules
When there is a firewall at the interface that reaches the SAM management network (NIC
1 on
Figure 8-2, “Distributed 5620 SAM Server/Database deployment with multiple
), the following rules apply.
Security
Firewall and NAT rules
....................................................................................................................................................................................................................................
....................................................................................................................................................................................................................................
7-22
5620 SAM
3HE-09809-AAAG-TQZZA 13.0 R7
Issue 1
December 2015