Cisco Cisco Expressway
5
Administration: Cisco Expressway-E
Management system
source port
Expressway-E
(listening) port
(listening) port
Management control
Private to DMZ
Open firewall
Private to DMZ
IP address
IP address of
management
management
computer(s)
IP address of
Expressway-E
IP Po
rt
s
http
TCP S
>= 1024
TCP 80
80
https
TCP S
>= 1024
TCP 443
443
ssh
TCP S
>= 1024
TCP 22
22
SNMP
UDP S
>= 1024
UDP 161
161
S = Source port , typically >= 1024
Open ports only for the management methods to be used
Internet
Expressway-C
Expressway-E
DMZ
PC
listening port
Expressway-E
source port
Management control
DMZ to private
Open firewall
DMZ to private
IP address
IP address of
management
management
computer(s)
IP address of
Expressway-E
IP Po
rt
s
NTP
UDP 123
123
UDP 123
123
LDAP (for login)
TCP 389 or 636
389 or 636
TCP Ue
30000 to 35999
Syslog
UDP 514
514
UDP Ve
30000 to 35999
Ue = Expressway TCP ephemeral port range defaults to 30000 to 35999
Ve = Expressway UDP ephemeral port range defaults to 30000 to 35999