Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Baitball Blogger

(46,735 posts)
Fri Feb 7, 2014, 03:08 PM Feb 2014

Why do I have to have a firewall port open?

I checked the internet logs and there is a lot of activity going on from an NTP port. Is this normal? Or should I close that port? And if so, where would I find it on a Cisco EA4500 if I've already got it on Port lights off?

I found this on the net:

Q. If a guest anchor controller is used outside the firewall, what firewall ports are open for guest access to work?

A. On any firewall between the guest anchor controller and the remote controllers, these ports need to be open:

IP Protocol 97 for user data traffic

UDP Port for tunnel control traffic

For optional management, these firewall ports need to be open:

SSH/Telnet—TCP Port 22/23

TFTP—UDP Port 69

NTP—UDP Port 123

SNMP—UDP Ports 161 (gets and sets) and 162 (traps)

HTTPS/HTTP—TCP Port 443/80

Syslog—TCP Port 514

RADIUS Auth/Account UDP Port 1812 and 1813
http://www.cisco.com/en/US/products/ps6366/products_qanda_item09186a00809ba482.shtml

7 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Why do I have to have a firewall port open? (Original Post) Baitball Blogger Feb 2014 OP
NTP = Network Time Protocol steve2470 Feb 2014 #1
Could it be because of my security cameras? Baitball Blogger Feb 2014 #2
Look at your camera documentation steve2470 Feb 2014 #3
Unfortunately, there isn't much documentation with these cameras. Baitball Blogger Feb 2014 #4
you might want to google those IP addresses also steve2470 Feb 2014 #5
Exactly. Baitball Blogger Feb 2014 #6
"A distributed denial-of-service NTP reflection attack...." steve2470 Feb 2014 #7

Baitball Blogger

(46,735 posts)
2. Could it be because of my security cameras?
Sat Feb 8, 2014, 12:22 AM
Feb 2014

What is perplexing is that the ip addresses that are accessing the port are varied.

steve2470

(37,457 posts)
3. Look at your camera documentation
Sat Feb 8, 2014, 12:24 AM
Feb 2014

See if the camera, for some reason, needs to check the time.

If you can't find the answer there, this is out of my league for sure.

Baitball Blogger

(46,735 posts)
4. Unfortunately, there isn't much documentation with these cameras.
Sat Feb 8, 2014, 12:05 PM
Feb 2014

Though, once you figure out how they programmed certain features you tend to facepalm yourself and say, "Of course!"

Because that particular NTP port is specifically mentioned on more than one help forum, I tend to believe that it is necessary.

Latest Discussions»Help & Search»Computer Help and Support»Why do I have to have a f...