1-15
Cisco ASA Series CLI Configuration Guide
 
Appendix 1      Addresses, Protocols, and Ports
  ICMP Types
ICMP Types
Table 1-9 lists the ICMP type numbers and names that you can enter in ASA commands.
IPsec over TCP 
(CTCP)
TCP — No default port is used. You must specify 
the port number when configuring IPsec 
over TCP.
NTP UDP 123 —
OSPF 89 N/A  Protocol only open on destination IP 
address 224.0.0.5 and 224.0.0.6
PIM 103 N/A Protocol only open on destination IP 
address 224.0.0.13
RIP UDP 520 —
RIPv2 UDP 520 Port only open on destination IP address 
224.0.0.9
SNMP UDP 161 Configurable.
SSH TCP 22 —
Stateful Update 8 (non-secure) 
9 (secure)
N/A —
Telnet TCP 23 —
VPN Load Balancing UDP 9023 Configurable.
VPN Individual User 
Authentication Proxy
UDP 1645, 1646 Port accessible only over VPN tunnel.
Table 1-8 Protocols and Ports Opened by Features and Services (continued)
Feature or Service Protocol Port Number Comments
Table 1-9 ICMP Types
ICMP Number ICMP Name
0 echo-reply
3 unreachable
4 source-quench
5 redirect
6 alternate-address
8 echo
9 router-advertisement
10 router-solicitation
11 time-exceeded
12 parameter-problem
13 timestamp-request
14 timestamp-reply