Unsolved

This post is more than 5 years old

5 Posts

805

February 26th, 2007 15:00

Networker 7.3.2 Storage Node through firewall

I have a storage node and I'm trying to lock down the firewall rules so I don't have to allow all traffic from a certain IP through to the storage node.

I've read Appendix B, and I've attached the pertinent paragraph of the manual below.

I can do the math (4+2 * 3 + 1) = 7 ports. I know I can use nsrports to narrow down my range of ports, but I don't know what ports to open.

Generally I open 7937 & 7938 tcp/udp on the clients, and have done so for the Storage Node. I assume that's the first 4 ports mentioned.

I know some ports are service ports, and some are connection ports, but don't know how many to assign and where to assign them.

Can anybody point me to more specific documentation or let me know what ports need to be opened, and not the number of ports?

thanks
--
steve

---
The only storage node daemons that are run are:
◆ nsrexecd
◆ nsrmmd
◆ nsrlcpd
As described previously, nsrexecd uses four ports, nsrmmd uses two ports per device, and
nsrlcpd uses one port per jukebox. From this, the number of ports required by a NetWorker
storage node is:
4 + 2 * #devices + #jukeboxes
Where:
◆ #devices is the number of devices configured on the NetWorker storage node only
◆ #jukeboxes is the number of jukeboxes configured on the NetWorker storage node only
---

2 Intern

 • 

2K Posts

February 26th, 2007 18:00

Ports to be open for Service Ports should be 7937-7944, If you want to open 7 ports for the Storage node which seems to be the right thing for the Storage Node.

I think for communication ports, it would be good to open 10001-30000 for Communication Ports for good performance.

68 Posts

February 27th, 2007 12:00

Good luck. I had tech support on the for several times asking for the ports as the book said 1 range and my firewall said it was getting request for other ports, after a few weeks of this. I just gave up; I could not get data to pass but both sides could see each other. open ip to ip for a set time to backup. My firewall guy was a bit upset as EMC Networker could not give us a set of ports that had a small range. other products or 1 or 2 ports 7.3.2 is a whole lot more. If you do get a list of prots that work for you can you post them here. I will try it again when I have time any my firewall guy has cooled down.

6 Operator

 • 

14.4K Posts

 • 

56.2K Points

February 27th, 2007 13:00

Can anybody point me to more specific documentation
or let me know what ports need to be opened, and not
the number of ports?

Technical bulletin 380.
No Events found!

Top