Cisco Cisco Email Security Appliance C370 User Guide

Page of 630
Appendix C      Firewall Information
C-580
Cisco IronPort AsyncOS 7.1 for Email Configuration Guide
OL-22158-02
82
HTTP
In
AsyncOS IPs
Used for viewing the IronPort 
Anti-Spam quarantine.
83
HTTPS
In
AsyncOS IPs
Used for viewing the IronPort 
Anti-Spam quarantine.
53
UDP/TCP
In & Out
DNS Servers
DNS if configured to use Internet root 
servers or other DNS servers outside 
the firewall. Also for SenderBase 
queries.
110
TCP
Out
POP Server
POP authentication for end users for 
IronPort Spam Quarantine
123
UDP
In & Out
NTP Server
NTP if time servers are outside 
firewall.
143
TCP
Out
IMAP Server
IMAP authentication for end users for 
IronPort Spam Quarantine
161
UDP
In
AsyncOS IPs
SNMP Queries
162
UDP
Out
Management Station
SNMP Traps
389 
3268
LDAP
Out
LDAP Servers
LDAP if LDAP directory servers are 
outside firewall. LDAP authentication 
for IronPort Spam Quarantine
636
3269
LDAPS
Out
LDAPS
LDAPS — ActiveDirectory’s Global 
Catalog Server
443
TCP
In
AsyncOS IPs
Secure HTTP (
https
) access to the 
GUI for system monitoring.
443
TCP
Out
res.cisco.com
Cisco Registered Envelope Service
443
TCP
Out
updates-static.ironport.co
m
Verify the latest files for the update 
server. 
443
TCP
Out
phonehome.senderbase.or
g
Receive/Send Virus Outbreak Filters
514
UDP/TCP
Out
Syslog Server
Syslog logging
628
TCP
In
AsyncOS IPs
QMQP if injecting email from outside 
firewall.
Table C-1
Firewall Ports  (Continued)