22-25
Cisco ONS 15454 DWDM Installation and Operations Guide, R6.0
August 2005
Chapter 22 Management Connectivity Reference
22.5 External Firewalls
22.5 External Firewalls
This section provides sample access control lists for external firewalls.
used by the TCC2/TCC2P.
The following access control list (ACL) example shows a firewall configuration when the proxy server
gateway setting is not enabled. In the example, the CTC workstation's address is 192.168.10.10. and the
ONS 15454 address is 10.10.10.100. The firewall is attached to the GNE, so inbound is CTC to the GNE
and outbound is from the GNE to CTC. The CTC Common Object Request Broker Architecture
(CORBA) Standard constant is 683 and the TCC CORBA Default is TCC Fixed (57790).
access-list 100 remark *** Inbound ACL, CTC -> NE ***
access-list 100 remark
Table 22-9
Ports Used by the TCC2/TCC2P
Port
Function
Action
1
1.
D = deny, NA = not applicable, OK = do not deny
0
Never used
D
20
FTP
D
21
FTP control
D
22
SSH
D
23
Telnet
D
80
HTTP
D
111
SUNRPC
NA
161
SNMP traps destinations
D
162
SNMP traps destinations
D
513
rlogin
D
683
CORBA IIOP
OK
1080
Proxy server (socks)
D
2001-2017
I/O card Telnet
D
2018
DCC processor on active TCC2/TCC2P
D
2361
TL1
D
3082
Raw TL1
D
3083
TL1
D
5001
BLSR server port
D
5002
BLSR client port
D
7200
SNMP alarm input port
D
9100
EQM port
D
9401
TCC boot port
D
9999
Flash manager
D
10240-12287
Proxy client
D
57790
Default TCC listener port
OK
Summary of Contents for ONS 15454 DWDM
Page 38: ...Figures xxxviii Cisco ONS 15454 DWDM Installation and Operations Guide R6 0 August 2005 ...
Page 54: ...Procedures liv Cisco ONS 15454 DWDM Installation and Operations Guide R6 0 August 2005 ...
Page 64: ... 64 Cisco ONS 15454 DWDM Installation and Operations Guide R6 0 August 2005 Chapter ...