Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

TCP ports used by Cisco IPS

I have have searched high and low via Google and within cisco.com for the answer to this, but can not seem to find it documented anywhere.  I am attempting to identify all ports that are required to manage the a Cisco IPS so that I can open up the firewalls.  It is my understanding that the ports below are required, but I am not sure if I am missing anything, please see below:

TCP 22:     Source => Sensor Admin

TCP 443:   Source => Sensor Admin

UDP 123:  Sensor Admin => NTP Server

Am I missing anything?  Thank you!

Jonathan

Boulder, Co

Everyone's tags (4)
2 ACCEPTED SOLUTIONS

Accepted Solutions
Cisco Employee

Re: TCP ports used by Cisco IPS

Jonathon;

  If you will be making use of automatic updates for signatures and global correlation updates you will also need to allow the IPS management IP address access on TCP 80 (signature and GC updates) and UDP 53 (GC updates).

Scott

Re: TCP/UDP ports used by Cisco IPS

Additionally, if you plan to use SNMP, you will need to allow UDP/161 and UDP/162 between the sensor and your management station.

Thank you,
Blayne Dreier
Cisco TAC IDS Team

**Please check out our Podcast**
TAC Security Show: http://www.cisco.com/go/tacsecuritypodcast

3 REPLIES
Cisco Employee

Re: TCP ports used by Cisco IPS

Jonathon;

  If you will be making use of automatic updates for signatures and global correlation updates you will also need to allow the IPS management IP address access on TCP 80 (signature and GC updates) and UDP 53 (GC updates).

Scott

Re: TCP/UDP ports used by Cisco IPS

Additionally, if you plan to use SNMP, you will need to allow UDP/161 and UDP/162 between the sensor and your management station.

Thank you,
Blayne Dreier
Cisco TAC IDS Team

**Please check out our Podcast**
TAC Security Show: http://www.cisco.com/go/tacsecuritypodcast

New Member

Re: TCP/UDP ports used by Cisco IPS

Thank you gentlemen, that answers my question.  Have a GREAT day!

Jonathan

Boulder, Co

801
Views
0
Helpful
3
Replies