HP -UX B6941-90001 Administrator's Reference Manual page 449

Management server on hp-ux
Table of Contents

Advertisement

NOTE
Figure 10-2
NOTE
Although the allowed port range of given managed nodes may differ if
the managed nodes are connected to the ITO management server
through a different router, all managed nodes that use the same router
must use the same port range.
Compulsory Firewall Port Ranges in ITO
ITO Management Server
[*]
135
Range 1
The DCE environment variable RPC_RESTRICTED_PORTS controls
the DCE RPC server runtime's tendency occasionally to open additional
ports outside the range specified in ITO, when called by clients using
UDP. Since the managed nodes may make DCE RPC calls (using UDP) to
the rpcd on the management server, it is important that the rpcd/dced
runs in an environment (on the management server) where the value of
RPC_RESTRICTED_PORTS is set to match the port range defined both
on the ITO management server and at the firewall. The value of
RPC_RESTRICTED_PORTS needs to be set in the following way in the
DCE system startup files. For example:
RPC_RESTRICTED_PORTS=tcp[range]1:udp[range1]
Whatever protocol you choose in the ITO GUI for RPC connections, the
allowed port range you define must always be open for TCP in both
directions at the firewall to allow for bulk data transmission.
Chapter 10
Tuning, Troubleshooting, Security, and Maintenance
ITO Managed Node
135
Range 2
[*]
ITO Security
449

Advertisement

Table of Contents
loading

This manual is also suitable for:

Openview it

Table of Contents