Cisco Cisco Content Security Management Appliance M160 Guía Del Usuario

Descargar
Página de 437
 
C-2
AsyncOS 8.1 for Cisco Content Security Management User Guide
Appendix C      Firewall Information
53
UDP/T
CP
Out
DNS servers
DNS if configured to use Internet root servers or 
other DNS servers outside the firewall. Also for 
SenderBase queries.
110
TCP
Out
POP server
POP authentication for end users for Cisco 
IronPort Spam Quarantine.
123
UDP
Out
NTP server
NTP if time servers are outside firewall.
143
TCP
Out
IMAP server
IMAP authentication for end users for Cisco 
IronPort Spam Quarantine.
161
UDP
In
AsyncOS IPs
SNMP queries.
162
UDP
Out
Management station
SNMP traps.
389 
3268
LDAP
Out
LDAP servers
LDAP if LDAP directory servers are outside 
firewall. LDAP authentication for Cisco IronPort 
Spam Quarantine.
636
3269
LDAPS
Out
LDAPS
LDAPS — ActiveDirectory’s global catalog 
server.
443
TCP
In
AsyncOS IPs
Secure HTTP (
https
) access to the GUI for 
system monitoring.
443
TCP
Out
update-static.cisco.c
om
Verify the latest files for the update server. 
443
TCP
Out
phonehome.senderba
se.org
Receive/send Outbreak Filters.
514
UDP/T
CP
Out
Syslog server
Syslog logging.
1024 
and 
higher 
See information above for Port 21 (FTP.)
2222
CCS
In and 
out
AsyncOS IPs
Cluster Communication Service (for centralized 
management).
6025
TCP
In
AsyncOS IPs
Send Cisco IronPort Spam Quarantine data to the 
Security Management appliance if the external 
Cisco IronPort Spam Quarantine is enabled.
7025
TCP 
In and 
out
AsyncOS IPs
Pass policy, virus, and outbreak quarantine data 
between Email Security appliances and the 
Security Management appliance when this 
feature is centralized. 
Table C-1
Firewall Ports 
Default 
Port Protocol 
In/Out Hostname 
Purpose