Black Box LWN600CM-1 Uživatelská příručka Strana 185

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 192
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 184
724-746-5500 | blackbox.com
724-746-5500 | blackbox.com
Page 185
Chapter 12: Traffic Types
12. Traffic Types
This is a list of all the types of traffic that might be involved with a SmartPath AP and SmartPath EMS VMA deployment. If a fire-
wall lies between any of the sources and destinations listed below, make sure that it allows these traffic types.
Table 12-1. Traffic supporting network access for wireless clients.
Service Source Destination Protocol SRC Port DST Port Notes
Active Directory
SmartPath AP
RADIUS server mgt0
interface
Active Directory
domain controller or
global catalog server
6 TCP 1024-65535
139, and 445 or
3268
Required for a SmartPath AP
RADIUS server to contact a domain
controller on Port 445 or a global
catalog server on Port 3268
17 UDP 1024-65535 389
DHCP
Unregistered wireless
client
SmartPath AP Wi-Fi
subinterface in access
mode
17 UDP 68 67
Required for captive Web portal
functionality
DNS
Unregistered
wireless
client
SmartPath AP Wi-Fi
subinterface in access
mode
17 UDP
53, or 1024–
65535
53
Required for captive Web portal
functionality
GRE
SmartPath AP mgt0
interface
SmartPath AP mgt0
interface
47 GRE N.A. N.A.
Required to support DNX* and Layer
3 roaming between members of
different clusters
HTTP
Unregistered wireless
client
SmartPath AP Wi-Fi
subinterface in access
mode
6 TCP 102465535 80
Required for captive Web portal
functionality
HTTPS
Unregistered wireless
client
SmartPath AP Wi-Fi
subinterface in access
mode
6 TCP 102465535 443
Required for captive Web portal
functionality using a server key
IKE
SmartPath AP VPN
client mgt0 interface
SmartPath AP VPN
server mgt0 interface
17 UDP
500 and 4500
for NAT—
Traversal
500 and 4500 for
NATTraversal
Required for SmartPath AP VPN
clients to connect to SmartPath AP
VPN servers
IPsec ESP
SmartPath AP VPN
client or server mgt0
interface
SmartPath AP VPN
server or client mgt0
interface
50 ESP N.A. N.A.
Required for IPsec VPN traffic to
flow between SmartPath AP VPN
clients and servers
IPsec ESP with NAT—
Traversal enabled
SmartPath AP VPN
client or server mgt0
interface
SmartPath AP VPN
server or client mgt0
interface
17 UDP 4500 4500
Required for VPN traffic to flow
when a NAT device is detected
in-line
LDAP
SmartPath AP
RADIUS server mgt0
interface
OpenLDAP server 6 TCP 102465535 389
Required for a SmartPath AP
RADIUS server to contact an
OpenLDAP server
LDAPS
SmartPath AP
RADIUS server mgt0
interface
OpenLDAP server 6 TCP 102465535 636
Required for a SmartPath AP
RADIUS server to make an encrypted
connection to an OpenLDAP server
RADIUS accounting
SmartPath AP mgt0
interface
RADIUS server 17 UDP 102465535 1813
Required to support RADIUS
accounting
RADIUS authentication
SmartPath AP mgt0
interface
RADIUS 102465535 1812
Required for 802.1x authentication
of users
*DNX = dynamic network extensions
†This is the default destination port number. You can change it to a different port number from 1 to 65535.
Zobrazit stránku 184

Komentáře k této Příručce

Žádné komentáře