Skip to main content

Network Architecture

Architecture Overview

NetArchitecture

Required Ports and blocked Ports for Security Server

Depending on the location of your server with the management and the services nodes, you must adjust the firewall. In the table below, all the servers are in the same network. The individual Security Server nodes are connected via UDP ports 7600 until 7609 and the TCP ports 12001 until 12010. These two port ranges must be routed in both directions continuous the network (on firewalls, routers, etc.) During the cluster communication large UDP packets are also sent (> 40kB), which fragmented at the IP level. Routers must allow this.

PortDescriptionExternalInternal
80User access to the web pages of the Portalallowallow
443App access to the Security Server via the SSLallowallow
8009AJP accessblockallow
8443Access to the management terminal / GUIblockallow
8445External access to the services nodesblockallow
9000Access to the configuration utilityblockallow
7600 - 7609Cluster communication via UDPblockallow
12001 - 12010Node registration in the cluster via TCPblockallow