1-16
Firepower 7000 and 8000 Series Installation Guide
Chapter 1 Introduction to the Firepower System
Preconfiguring Appliances
Preconfiguring Appliances
You can preconfigure multiple appliances and Firepower Management Centers in a central location for
later deployment at other sites. For considerations when preconfiguring appliances, see
Firepower Managed Devices, page E-1
.
443/tcp
HTTPS
AMQP
cloud comms.
Bidirectional
Management Center
obtain:
•
software, intrusion rule, VDB, and
GeoDB updates
•
URL category and reputation data (port
80 also required)
•
the Cisco Intelligence feed and other
secure Security Intelligence feeds
•
endpoint-based (FireAMP) malware
events
•
malware dispositions for files detected in
network traffic
•
dynamic analysis information on
submitted files
7000 and 8000 Series
devices
download software updates using the device’s
local web interface.
7000 and 8000 Series,
virtual devices, and
ASA FirePOWER
submit files to the Cisco cloud for dynamic
analysis.
514/udp
syslog
Outbound
Any
send alerts to a remote syslog server.
623/udp
SOL/LOM
Bidirectional
7000 and 8000 Series
allow you to perform Lights-Out Management
using a Serial Over LAN (SOL) connection.
1500/tcp
2000/tcp
database
access
Inbound
Management Center
allow read-only access to the database by a
third-party client.
1812/udp
1813/udp
RADIUS
Bidirectional
Any except virtual
devices and
ASA FirePOWER
communicate with a RADIUS server for
external authentication and accounting.
3306/tcp
User Agent
Inbound
Management Center
communicate with User Agents.
8302/tcp
eStreamer
Bidirectional
Any except virtual
devices
communicate with an eStreamer client.
8305/tcp
appliance
comms.
Bidirectional
Any
securely communicate between appliances in
a deployment.
Required.
8307/tcp
host input
client
Bidirectional
Management Center
communicate with a host input client.
32137/tcp
cloud comms.
Bidirectional
Management Center
allow upgraded Management Centers to
communicate with the Cisco cloud.
Table 1-7
Default Communication Ports for Firepower System Features and Operations (continued)
Port
Description
Direction
Is Open on...
To...