HP t505 Administrator Guide 9 - Page 22

Whitelist Ports TCP/UDP, Important

Page 22 highlights

Administrator Guide for Thin Clients | HP Velocity • Whitelist Ports TCP/UDP-The TCP/UDP ports whose application flows HP Velocity will protect when the following criteria are met: - The destination IP address for the application flow is not specified in the Blacklist IP filter. - The destination IP address for the application flow is specified in the Whitelist IP filter. Important: When the IP Whitelist filter is configured, HP Velocity will protect an application flow only if its destination IP address matches an address included in this filter. Note: If the IP Whitelist filter includes subnet destination IP addresses, the IP Blacklist filter can be used to filter IP addresses in that subnet whose application flows HP Velocity will not protect. Table 7: Policy filters (port & IP) settings Parameter Default Evaluation order Blacklist IP 255.255.255.255/32 1 Whitelist IP All IP addresses 2 Blacklist TCP/UDP Ports TCP: 21 53 67-68 123 137-139 161 500 1194 2869 4 3702 4500 5355 5357 9100 17500 UDP: 21 53 67-68 123 137-139 161 500 546-547 631 1194 1900 2869 3702 4500 5353 5355 5357 9100 17500 42966 Whitelist TCP/UPD Ports All ports 3 Note: Use the CIDR format for IP addresses. To enter multiple IP addresses or port numbers in a field, use a space-separated list; for example, 192.168.1.0/24 145.76.53.3/32 or 80 1750 1751. Figure 16: HP Velocity administrative template - Policy Filters (Port & IP) 18

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50

18
Administrator Guide for Thin Clients
|
HP Velocity
Whitelist Ports TCP/UDP
—The TCP/UDP ports whose application flows HP Velocity will protect when the following
criteria are met:
-
The destination IP address for the application flow is not specified in the Blacklist IP filter.
-
The destination IP address for the application flow is specified in the Whitelist IP filter.
Important:
When the IP Whitelist filter is configured, HP Velocity will protect an application flow only if its destination IP
address matches an address included in this filter.
Note:
If the IP Whitelist filter includes subnet destination IP addresses, the IP Blacklist filter can be used to filter IP
addresses in that subnet whose application flows HP Velocity will not protect.
Table 7:
Policy filters (port & IP) settings
Note:
Use the CIDR format for IP addresses. To enter multiple IP addresses or port numbers in a field, use a
space-separated list; for example, 192.168.1.0/24 145.76.53.3/32 or 80 1750 1751.
Figure 16: HP Velocity administrative template - Policy Filters (Port & IP)
Parameter
Default
Evaluation order
Blacklist IP
255.255.255.255/32
1
Whitelist IP
All IP addresses
2
Blacklist TCP/UDP Ports
TCP: 21 53 67-68 123 137-139 161 500 1194 2869
3702 4500 5355 5357 9100 17500
4
UDP: 21 53 67-68 123 137-139 161 500 546-547
631 1194 1900 2869 3702 4500 5353 5355 5357
9100 17500 42966
Whitelist TCP/UPD Ports
All ports
3