file. For example, you will need to lock specific ports for
rpc.statd
,
rpc.lockd
,
rpc.mountd
, and
rpc.quotad
.
•
It is best to allow all ICMP types on all networks; however, you can limit ICMP to types 0, 3,
8, and 11 if necessary.
Be sure to open the ports listed in the following table.
Description
Port
SSH
22/tcp
SSH for Onboard Administrator (OA); only for X9720 blades
9022/tcp
NTP
123/tcp, 123/upd
Multicast DNS, 224.0.0.251
5353/udp
netperf
tool
12865/tcp
X9000 management console to file serving nodes
80/tcp
443/tcp
X9000 management console and X9000 file system
5432/tcp
8008/tcp
9002/tcp
9005/tcp
9008/tcp
9009/tcp
9200/tcp
Between file serving nodes and NFS clients (user network)
NFS
RPC
quota
lockmanager
lockmanager
mount daemon
stat
stat outgoing
reserved for use by a custom application (CMU) and can be disabled if not used
2049/tcp, 2049/udp
111/tcp, 111/udp
875/tcp, 875/udp
32803/tcp
32769/udp
892/tcp, 892/udp
662/tcp, 662/udp
2020/tcp, 2020/udp
4000:4003/tcp
Between file serving nodes and CIFS clients (user network)
137/udp
138/udp
139/tcp
445/tcp
Between file serving nodes and X9000 clients (user network)
9000:9002/tcp
9000:9200/udp
Between file serving nodes and FTP clients (user network)
20/tcp, 20/udp
21/tcp, 21/udp
Between X9000 management console GUI and clients that need to access the GUI
7777/tcp
8080/tcp
Dataprotector
5555/tcp, 5555/udp
Internet Printing Protocol (IPP)
631/tcp, 631/udp
Configuring ports for a firewall
19