The main server, survivable remote servers, and each survivable core server use specific ports across a customer’s network for registration and translation distribution. You can modify the firewall settings from the command line using the firewall command with suser level access.
Note:
Use ports 80 and 443 to access the System Management Interface (SMI). Use the port 5022 for the secured System Access Terminal (SAT).
Use the information in the following table to determine the ports that must be open in the customer’s network in a survivable core server environment.
Table 1: Open ports
Port |
Used by |
Description |
22 |
ssh/sftp |
|
68 |
DHCP |
|
514 |
This port is used in Communication Manager 1.3 to download translations. |
|
1719 (UDP port) |
The survivable core server to register to the main server. |
A survivable core server registers with the main server using port 1719. |
1024 and above |
Processor Ethernet |
TCP outgoing |
1039 |
PTLS encrypted H.248 |
|
2944 |
H.248 over TLS |
|
2945 |
H.248 over TCP |
|
5000 to 9999 |
Processor Ethernet |
TCP incoming |
21874 (TCP port) |
The main server to download translations to the survivable core server. |
A main server uses port 21874 to download translations to the survivable core server and the survivable remote server(s). |