Table 7-26
Firewall rules for inter process communication on the 5620 SAM
Cflowd Auxiliary Server(s)
(continued)
Protocol
From port
On
To port
On
TCP
Any
Auxiliary Server(s)
4457
Auxiliary Server(s)
TCP
Any
Auxiliary Server(s)
8083
Auxiliary Server(s)
TCP
Any
Auxiliary Server(s)
9443
Auxiliary Server(s)
TCP
Any
Auxiliary Server(s)
9990
Auxiliary Server(s)
TCP
Any
Auxiliary Server(s)
9999
Auxiliary Server(s)
When there is a firewall at the interface that communicates with the 5620 SAM Servers,
the following rules apply. If multiple interfaces are used for 5620 SAM Server
communication to the clients (GUI and OSS) and auxiliary servers, the network traffic
from the 5620 SAM Auxiliaries could pass through the SAM client interface (NIC 3 on
) or the SAM network interface (NIC 1 on
5620 SAM Server/Database deployment with multiple network interfaces” (p. 8-4)
) of
the 5620 SAM Auxiliary.
Table 7-27
Firewall rules for traffic coming into the 5620 SAM Auxiliary Statistics
/ Call Trace Server(s) from the 5620 SAM Server(s)
Protocol
From port
On
To port
On
TCP
1097
Server(s)
Any
Auxiliary Server(s)
TCP
1099
Server(s)
Any
Auxiliary Server(s)
TCP
4447
Server(s)
Any
Auxiliary Server(s)
TCP
> 32768
Server(s)
> 32768
Auxiliary Server(s)
When there is a firewall at the interface that reaches the 5620 SAM Client(s) (NIC 3 on
) and NAT is used on the 5620 SAM Auxiliary Server(s), the
following rules apply to allow the OSS clients to collect the logToFile accounting
statistics files. Services require the use of public addresses.
Table 7-28
Additional Firewall rules required to allow services on the 5620 SAM
client(s) to communicate with the 5620 SAM Auxiliary(s) if NAT is
used on the Auxiliary Server(s).
Protocol
From port
On
To port
On
TCP
Any
Auxiliary Server Public
Address
21
Auxiliary Server Private
Address
Security
Firewall and NAT rules
....................................................................................................................................................................................................................................
....................................................................................................................................................................................................................................
5620 SAM
3HE-09809-AAAG-TQZZA 13.0 R7
Issue 1
December 2015
7-27