15-41
Cisco ONS 15454 DWDM Reference Manual, R8.5
78-18343-02
Chapter 15 Management Network Connectivity
15.6 External Firewalls
• Mask (255.255.255.255) is a 32-bit mask, meaning only the 172.20.214.94 address is a destination.
• Gateway (172.20.214.93) indicates that the destination host is accessed through a node with IP
address 172.20.214.93.
• Interface (pdcc0) indicates that a DCC interface is used to reach the gateway.
15.6 External Firewalls
This section provides sample access control lists for external firewalls. Table 15-10 lists the ports that
are used by the TCC2/TCC2P.
Table 15-10 Ports Used by the TCC2/TCC2P
Port Function Action
1
1. D = deny, NA = not applicable, OK = do not deny
0 Never used D
20 FTP D
21 FTP control D
22 SSH D
23 Telnet D
80 HTTP D
111 SUNRPC NA
161 SNMP traps destinations D
162 SNMP traps destinations D
513 rlogin D
683 CORBA IIOP OK
1080 Proxy server (socks) D
2001-2017 I/O card Telnet D
2018 DCC processor on active TCC2/TCC2P D
2361 TL1 D
3082 Raw TL1 D
3083 TL1 D
5001 BLSR server port D
5002 BLSR client port D
7200 SNMP alarm input port D
9100 EQM port D
9401 TCC boot port D
9999 Flash manager D
10240-12287 Proxy client D
57790 Default TCC listener port OK