Ip-Acl Counter Cleanup - Cisco MDS 9000 Series Configuration Manual

Security
Hide thumbs Also See for MDS 9000 Series:
Table of Contents

Advertisement

Configuring IPv4 and IPv6 Access Control Lists
Port number
32768 - 32769
44583 - 59121
NFS—A port in this range is used by the NFS service on the switch. This is only for intraswitch use. It is not
essential to provide external access to or from these ports. This feature cannot be disabled. To block access
to this service, configure an IP access list to deny access to the range of ports. Refer to the
IPv6 Access Control Lists
Remote Packet Capture—This port is used by the Fibre Channel Analyzer service on the switch for
communicating with an Ethereal protocol analyzer client on a host using the Remote Capture Protocol (RPCAP).
This service is used for troubleshooting and is optional for normal switch operation. This feature cannot be
disabled. To block access to this service, configure an IP access list to deny access to the range of ports. Refer
to the
CFS over IPv4—This port is used by the CFS over IPv4 service to distribute switch configuration information
to peer switches in the fabric. CFS is an important service for a switch to communicate with peers, but several
transport options are possible. The correct transport depends on the fabric implementation. This port may be
closed by disabling the CFS over IPv4 service. Refer to the
9000 Family CLI Configuration Guide for details.
Cluster—This port is used by the cluster service to communicate with peer switches in a cluster. Features
such as IOA and SME rely on this service. If such features are not in use, the cluster service is not essential
to a switch operation. This port can be closed by disabling the cluster service. Refer to the
Disabling Clustering
for details.
License Manager—These ports are used by the License Manager service. This only for intraswitch use. It is
not essential to provide external access to or from these ports. This feature cannot be disabled. To block access
to this service, configure an IP access list to deny access to the range of ports. Refer to the
IPv6 Access Control Lists

IP-ACL Counter Cleanup

Use the clear command to clear the counters for a specified IPv4-ACL filter entry.
IP Protocol
Platform
(UDP/TCP)
TCP
Cisco MDS 8-Gb Fabric Switch for HP
c-Class Blade System
Cisco MDS 9148
Cisco MDS 9222i
Cisco MDS 9506
Cisco MDS 9509
Cisco MDS 9513
TCP
Cisco MDS 9148S
Cisco MDS 9250i
Cisco MDS 9706
Cisco MDS 9710
section for more details.
About IPv4 and IPv6 Access Control Lists
section of the Cisco MDS 9000 Family Storage Media Encryption Configuration Guide
section for more details.
section for more details.
Enabling CFS Over IP
Cisco MDS 9000 Series Security Configuration Guide, Release 8.x
IP-ACL Counter Cleanup
Feature/Service Name
Random Port?
License Manager
Yes
License Manager
Yes
About IPv4 and
section of the Cisco MDS
Enabling and
About IPv4 and
115

Advertisement

Table of Contents
loading

Table of Contents