Got it

How to configure the firewall upon the esight

Created: Jul 18, 2019 11:25:30Latest reply: Aug 14, 2019 13:29:47 950 2 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hello everyone,

We are using the esight to monitor and manage the network, and it works fine by now. We are plan to add a firewall upon the esight server, I would like to know which ports should be allowed to exclude the potential network problem.

Thanks!


Featured Answers

Recommended answer

chenhui
Admin Created Jul 18, 2019 11:26:51

@sim_157 Hi,
View more

This article contains more resources

You need to log in to download or view. No account? Register

x
  • x
  • convention:

All Answers
@sim_157 Hi,
View more

This article contains more resources

You need to log in to download or view. No account? Register

x
  • x
  • convention:

after configuring snmp and telnet template parameters on both FW and esight

login to FW via web browser
under Network > Interfaces
navigate to the interface that will receive SNMP from eSight


under Access Management
This function allows an administrator to access a FW using HTTP, HTTPS, ping, SSH, SNMP, NETCONF, or Telnet. Interface access control takes precedence over security policies. This means that an administrator can use an access control-enabled interface to access a FW even if no security policy is configured for communication between the zone of the interface and a local zone.

By default, the management interface (GigabitEthernet 0/0/0) allows HTTP, HTTPS, ping. access to a FW, and a non-management interface denies HTTP, HTTPS, ping, SSH, SNMP, NETCONF, or Telnet. access to a FW.

MUST check SNMP box
SNMP: allows administrators to use an SNMP NMS to access a device. If SNMP is not selected, the interface discards SNMP packets after receiving them.

same apply to telnet access from esight to FW
Telnet: allows an administrator to use Telnet to access a device. If Telnet is not selected, the interface discards them after receiving them.
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.