McAfee M4050 Troubleshooting Guide - Page 12

Additional communication ports, Syslog forwarding ACL

Page 12 highlights

McAfee® Network Security Platform 6.0 Before You Install 8501 8502 Port # 8503 8504 8555 443 80 22 Protocol TCP TCP TCP TCP TCP TCP TCP TCP Description Direction of communication Proprietary (install port) Sensor-->Manager Proprietary (alert channel/control channel) Sensor-->Manager Proprietary (packet log channel) Sensor-->Manager Proprietary (file transfer channel) Sensor-->Manager SSL/TCP/IP client-->Manager (Threat Analyzer) HTTPS client-->Manager Web-based user client-->Manager interface (Webstart/JNLP, Console Applets) SSH Remote console access Note: If you choose to use non-default ports for the Install port, Alert port, and Log port, ensure that those ports are also open on the firewall.  Note that 3306/TCP is used internally by the Manager to connect to the MySQL database.  If you have Email Notification or SNMP Forwarding configured on the Manager, and there is firewall residing between the Manager and your SMTP or SNMP server, ensure the following ports are available as well. Additional communication ports Port # Protocol Description Direction of communication 25 TCP SMTP Manager-->SMTP server 49 TCP TACACS+ Integration Sensor-->TACACS+ server 162 UDP SNMP Forwarding Manager-->SNMP server 389 TCP LDAP Integration Manager-->LDAP server (without SSL) 443 TCP Secure communication Manager 1-->Manager 2 for MDR 443 TCP Secure communication Manager 2-->Manager 1 for MDR 514 UDP Syslog forwarding (ACL Manager-->Syslog server logging) 636 TCP LDAP Integration (with Manager-->LDAP server SSL) 3

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95

McAfee® Network Security Platform 6.0
Before You Install
3
Port #
Protocol
Description
Direction of communication
8501
TCP
Proprietary
(install port)
Sensor-->Manager
8502
TCP
Proprietary
(alert
channel/control
channel)
Sensor-->Manager
8503
TCP
Proprietary
(packet log
channel)
Sensor-->Manager
8504
TCP
Proprietary
(file transfer
channel)
Sensor-->Manager
8555
TCP
SSL/TCP/IP
(Threat Analyzer)
client-->Manager
443
TCP
HTTPS
client-->Manager
80
TCP
Web-based user
interface
client-->Manager
(Webstart/JNLP, Console
Applets)
22
TCP
SSH
Remote console access
Note:
If you choose to use non-default ports for the Install port, Alert port, and Log
port, ensure that those ports are also open on the firewall.
Note that 3306/TCP is used internally by the Manager to connect to the MySQL
database.
If you have Email Notification or SNMP Forwarding configured on the Manager, and
there is firewall residing between the Manager and your SMTP or SNMP server,
ensure the following ports are available as well.
Additional communication ports
Port #
Protocol
Description
Direction of communication
25
TCP
SMTP
Manager-->SMTP server
49
TCP
TACACS+ Integration
Sensor-->TACACS+ server
162
UDP
SNMP Forwarding
Manager-->SNMP server
389
TCP
LDAP Integration
(without SSL)
Manager-->LDAP server
443
TCP
Secure communication
for MDR
Manager 1-->Manager 2
443
TCP
Secure communication
for MDR
Manager 2-->Manager 1
514
UDP
Syslog forwarding (ACL
logging)
Manager-->Syslog server
636
TCP
LDAP Integration (with
SSL)
Manager-->LDAP server