<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ports for ACS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546180#M427794</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a list with different UDP and TCP ports used by the ACS:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Secure ACS Ports Usage &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Service name - UDP Port&lt;/P&gt;&lt;P&gt;Dynamic Host Configuration Protocol (DHCP) - 68 &lt;/P&gt;&lt;P&gt;RADIUS authentication and authorization (original draft RFC) - 1645&lt;/P&gt;&lt;P&gt;RADIUS accounting (original draft RFC) - 1646&lt;/P&gt;&lt;P&gt;RADIUS authentication and authorization (revised RFC) - 1812 &lt;/P&gt;&lt;P&gt;RADIUS accounting (original draft RFC) - 1813 &lt;/P&gt;&lt;P&gt; 	&lt;/P&gt;&lt;P&gt;Service name - TCP Port&lt;/P&gt;&lt;P&gt;TACACS+ AAA - 49 &lt;/P&gt;&lt;P&gt;Replication and RDBM synchronization - 2000 &lt;/P&gt;&lt;P&gt;ACS remote logging - 2001 &lt;/P&gt;&lt;P&gt;HTTP administrative access (at login) - 2002 &lt;/P&gt;&lt;P&gt;ACS distributed logging (appliance only) - 2003 &lt;/P&gt;&lt;P&gt;Administrative access (after login) &lt;/P&gt;&lt;P&gt;port range Configurable (default 1024-65535) ACS assigns unique port number from the range to each administration session&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps! Please rate all posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Martin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 08 Feb 2006 15:18:34 GMT</pubDate>
    <dc:creator>mheusinger</dc:creator>
    <dc:date>2006-02-08T15:18:34Z</dc:date>
    <item>
      <title>ports for ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546178#M427785</link>
      <description>&lt;P&gt;What ports are need to be open for ACS remote managemet , default port 2002 its clear, but communication than move to 3857 so any others???... Is there any list of required ports????&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:27:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546178#M427785</guid>
      <dc:creator>m.sir</dc:creator>
      <dc:date>2019-03-10T21:27:49Z</dc:date>
    </item>
    <item>
      <title>Re: ports for ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546179#M427790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The way in which the Web server manages web sessions is using specific ports.  By default this is random, which as you have observed creates an issue with firewalls. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can restrict the range of ports used for sessions via&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Administration Control -&amp;gt; Access Policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then down the bottom is a section called HTTP Configuration&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here you can configure the ports that can be used for administration sessions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So 2002 is always used for the initial login, and then once sucesfull the admin will be placed on to one of these ports.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Only one admin per port, so only opening 2 ports means that only 2 admins can have concurrent access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Once you have determined how many admins you want to have concurrent access, select an appropriate port range and open this up in your firewall as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Feb 2006 09:00:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546179#M427790</guid>
      <dc:creator>andrewclymer</dc:creator>
      <dc:date>2006-02-08T09:00:08Z</dc:date>
    </item>
    <item>
      <title>Re: ports for ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546180#M427794</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a list with different UDP and TCP ports used by the ACS:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Secure ACS Ports Usage &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Service name - UDP Port&lt;/P&gt;&lt;P&gt;Dynamic Host Configuration Protocol (DHCP) - 68 &lt;/P&gt;&lt;P&gt;RADIUS authentication and authorization (original draft RFC) - 1645&lt;/P&gt;&lt;P&gt;RADIUS accounting (original draft RFC) - 1646&lt;/P&gt;&lt;P&gt;RADIUS authentication and authorization (revised RFC) - 1812 &lt;/P&gt;&lt;P&gt;RADIUS accounting (original draft RFC) - 1813 &lt;/P&gt;&lt;P&gt; 	&lt;/P&gt;&lt;P&gt;Service name - TCP Port&lt;/P&gt;&lt;P&gt;TACACS+ AAA - 49 &lt;/P&gt;&lt;P&gt;Replication and RDBM synchronization - 2000 &lt;/P&gt;&lt;P&gt;ACS remote logging - 2001 &lt;/P&gt;&lt;P&gt;HTTP administrative access (at login) - 2002 &lt;/P&gt;&lt;P&gt;ACS distributed logging (appliance only) - 2003 &lt;/P&gt;&lt;P&gt;Administrative access (after login) &lt;/P&gt;&lt;P&gt;port range Configurable (default 1024-65535) ACS assigns unique port number from the range to each administration session&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps! Please rate all posts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Martin&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Feb 2006 15:18:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ports-for-acs/m-p/546180#M427794</guid>
      <dc:creator>mheusinger</dc:creator>
      <dc:date>2006-02-08T15:18:34Z</dc:date>
    </item>
  </channel>
</rss>

