Cascade Installation Guide
6
Access to other network services
•
TCP/22
– (ssh) This is needed for secure shell access to Cascade software
components and for the appliance to obtain information from servers via
scripts.
•
UDP/161
– (snmp) The Profiler and Express use SNMP to obtain interface
information from switches. Also, management systems use this port to
read the Cascade appliance MIB.
•
TCP/5432
– (odbc) If you will be allowing other applications to access the
Profiler or Express internal database via ODBC, then you must allow
traffic on this port.
•
42999
– If you will be using the Profiler or Express user identification
feature with a Microsoft Active Directory domain controller, then you
must allow traffic on port 42999.
•
Vulnerability scanner ports
– If you will be using the Profiler or Express
vulnerability scan feature, then you must allow traffic on the port that the
Cascade appliance is to use for accessing the vulnerability scanner server.
Obtain vulnerability scanner server addresses and port numbers from the
administrator of those systems. The default ports are as follows:
o
Nessus: 1241
o
nCircle: 443
o
Rapid7: 3780
o
Qualys: Requires external https access to
qualysapi.qualys.com
(Note: This is separate from
qualysguard.qualys.com
.)
o
Foundstone: 3800
Access to traffic flow data (Express and Gateway)
The ports used by the NetFlow, IPFIX, Packeteer FDR, and sFlow data sources
must be open between the source devices and the Express or Gateway.
Access to forwarding destinations (Gateway only)
The Gateway can forward NetFlow, IPFIX, Packeteer FDR, and sFlow data to
other destinations. It sends data to the ports that you specify during configuration.
These ports must not be blocked.
Summary of Contents for Cascade Express
Page 1: ...Cascade Installation Guide Version 9 0 February 2011 ...
Page 4: ...iv 712 00058 07 ...
Page 8: ...viii ...
Page 10: ...x ...
Page 21: ...Cascade Installation Guide 11 ...
Page 48: ...Cascade Installation Guide 38 ...
Page 91: ......
Page 92: ......