User guide
getting
started
welcome
rter
inormation
45
te
manager
te
connector
Appendix 5 - Configuring firewalls
If a Windows Firewall is enabled (with a default configuration) on the
system running ADDER.NET, you will need to carry out the following
procedure to open special ports and scopes within the firewall to allow
all ADDER.NET traffic to pass.
For each port that you add to the firewall, you will need to determine
the scope that will be applied to it. Windows offers three choices: Any
computer (i.e. no restriction - the default setting), My network (local
subnet) or Custom list. The latter is the most secure method as it restricts
passage of traffic to a defined set of IP addresses that encompass the
systems of your users and the devices used.
CAUTION: Great care should be taken when adding ports to a
firewall as each one could potentially open a point of attack from
exterior sources. For this reason, it is advisable to use the custom
list scope in order to limit access to particular IP addresses.
To open ports within a Windows firewall
1 Go to Start Menu > Control Panel or Start Menu > Settings >
Control Panel
2 Start Windows Firewall. Depending on the version, it may be
necessary to click on Change Settings.
3 Select the Exceptions tab. In this tab, you need to add a total of five
new ports, each using the following procedure:
4 Click the Add port... button.
5 Fill in Name and Port number (as listed in the table opposite).
6 SelecteitherTCP or UDP (as listed in the table opposite).
7 Click on Change scope...
8 In Change Scope panel, select the appropriate scope, either: Any
computer (i.e. no restriction), My network (local subnet) or Custom
list.
If you select Custom list, use the address field to enter a list of IP
addresses, subnets or both, separated by commas in order to define
the allowable range of systems and devices.
9 ClicktheOKbutton(intheChangeScopepanel).
10 Click the OK button (in the Add Port panel).
11 Repeat steps 4 to 10 for each port listed in the table opposite.
12 When all ports are complete, click the OK button in the Windows
Firewall Settings panel to exit.
Five ports that need to be added
Name Port Number Protocol For Reason
HTTP 80 * TCP Users Unencrypted web access
HTTPS 443 * TCP Users Encrypted web access
NTP 123 UDP Devices Device clock synchronisation
syslog 514 UDP Devices Device status (if in-use) information
KVMVIP 1132 TCP Devices Devices connecting to ADDER.NET
* If ADDER.NET has been installed using non-standard ports, then the ports actually in use,
rather than 80 and 443 need to be opened.