cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
301
Views
16
Helpful
2
Replies

Cisco CSA communications

matt_nels
Level 1
Level 1

I will be using 443 for the access to the MC from the client on a DMZ. However, do I need ports open from the MC to the clients? Which ports would it be?

2 Replies 2

codycornell
Level 1
Level 1

Source Destination Port Protocol

CSA Agent CSAMC Server 80 TCP

CSA Agent CSAMC Server 443 TCP

CSA Agent CSAMC Server 5401 TCP

CSAMC Server Each CSA Agent 5401 UDP

mnlatif
Level 3
Level 3

Also it might be a good idea to Not open TCP\443 from the DMZ to the CSA MC. Since TCP\443 is also used to access the login page to the MC and should be secured.

TCP\443 is Only used as alternative to TCP\5401 and as long as 5401 is open, CSA Clients will not used TCP\443 for polling etc

Thanks,

Naman