<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: APIC-EM Firewall Ports Opening? in Controllers</title>
    <link>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545701#M2285</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Keith,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it depends what you are doing.&amp;nbsp; I assume you are talking about inbound connections.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;22 + 443&amp;nbsp; + 14141 are required for management.&lt;/P&gt;&lt;P&gt;500 can be required for inter cluster comms through a FW&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;67 + 80 + 123 can be required for PnP (With certificates, you need NTP)&lt;/P&gt;&lt;P&gt;162 can be required for host update notifications (SNMP traps)&lt;/P&gt;&lt;DIV class="section"&gt;&lt;DIV class="column"&gt;&lt;P&gt;16026 is required for IWAN (APIC-EM is a CA)&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 04 Jul 2017 08:15:41 GMT</pubDate>
    <dc:creator>aradford</dc:creator>
    <dc:date>2017-07-04T08:15:41Z</dc:date>
    <item>
      <title>APIC-EM Firewall Ports Opening?</title>
      <link>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545700#M2284</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see that this document recommends the ports that SHOULD be open on the Firewall &lt;SPAN style="color: #1f497d; font-family: Arial; font-size: 10pt;"&gt;or is it just SSH &amp;amp; SNMP?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10.0pt; font-family: Arial; color: #1f497d;"&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/application-policy-infrastructure-controller-enterprise-module/1-1-x/hardware-guide/b_apic-em_hardware_install/b_apic-em_hrd_install_appendix_01001.pdf" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/cloud-systems-management/application-policy-infrastructure-controller-enterprise-module/1-1-x/hardware-guide/b_apic-em_hardware_install/b_apic-em_hrd_install_appendix_01001.pdf&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Is this mandatory?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What stops working if we dont open them?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Keith&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Mar 2019 23:10:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545700#M2284</guid>
      <dc:creator>keitwils</dc:creator>
      <dc:date>2019-03-12T23:10:17Z</dc:date>
    </item>
    <item>
      <title>Re: APIC-EM Firewall Ports Opening?</title>
      <link>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545701#M2285</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Keith,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it depends what you are doing.&amp;nbsp; I assume you are talking about inbound connections.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;22 + 443&amp;nbsp; + 14141 are required for management.&lt;/P&gt;&lt;P&gt;500 can be required for inter cluster comms through a FW&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;67 + 80 + 123 can be required for PnP (With certificates, you need NTP)&lt;/P&gt;&lt;P&gt;162 can be required for host update notifications (SNMP traps)&lt;/P&gt;&lt;DIV class="section"&gt;&lt;DIV class="column"&gt;&lt;P&gt;16026 is required for IWAN (APIC-EM is a CA)&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Jul 2017 08:15:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545701#M2285</guid>
      <dc:creator>aradford</dc:creator>
      <dc:date>2017-07-04T08:15:41Z</dc:date>
    </item>
    <item>
      <title>Re: APIC-EM Firewall Ports Opening?</title>
      <link>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545702#M2286</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Latest link: &lt;A href="http://www.cisco.com/c/en/us/td/docs/cloud-systems-management/application-policy-infrastructure-controller-enterprise-module/1-5-x/install/b_apic_em_install_guide_v_1-5-x/b_apic_em_install_guide_v_1-5-x_chapter_010.html?bookSearch=true#reference_AD0C50D51F91478697F003362FC4C1D6" title="http://www.cisco.com/c/en/us/td/docs/cloud-systems-management/application-policy-infrastructure-controller-enterprise-module/1-5-x/install/b_apic_em_install_guide_v_1-5-x/b_apic_em_install_guide_v_1-5-x_chapter_010.html?bookSearch=true#reference_AD0C50D51F91478697F003362FC4C1D6"&gt;Cisco Application Policy Infrastructure Controller Enterprise Module Installation Guide, Release 1.5.x - Installing the…&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jul 2017 12:06:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545702#M2286</guid>
      <dc:creator>ngoldwat</dc:creator>
      <dc:date>2017-07-11T12:06:49Z</dc:date>
    </item>
    <item>
      <title>Re: APIC-EM Firewall Ports Opening?</title>
      <link>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545703#M2287</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Nick,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;good to see we have finally turned off 14141.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Adam&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Jul 2017 13:25:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/controllers/apic-em-firewall-ports-opening/m-p/3545703#M2287</guid>
      <dc:creator>aradford</dc:creator>
      <dc:date>2017-07-11T13:25:24Z</dc:date>
    </item>
  </channel>
</rss>

