Craft Works Interface Quick Start Guide
22
You must open the ports listed in Table 13 when configuring the firewall. See the firewall documentation for information on
opening the ports.
For an example of a dual-homed device configuration, the client side is the primary interface, and the router side is the secondary
interface (see Figure 9). When setting the minimum router configuration, you must use the dual-homed device router side
(secondary) IP address and DNS name when configuring the IP hostname for the CWI client. This mapping is required for the
client to view the notifications from the router received by the dual-homed instance of CWI.
Figure 9 Dual-Homed Device Configuration
Login Modes and Requirements
A primary goal of CWI is to communicate with a device in any state by dynamically supporting three operational modes (see
Table 14). CWI can manage multiple devices with different modes simultaneously.
The three different login modes are based on the following requirements:
• Connection methods
• MGBL-PIE files (installed or not installed). MGBL refers to Manageability. PIE refers to Package Installation Envelope.
VPN When setting the minimum router configuration, you must use the client Virtual Private
Network (VPN) IP address and Domain Name Server (DNS) name instead of the client IP
address and DNS name when configuring the IP hostname for the CWI client. This mapping
is required for the client to receive notifications from the router.
If you have a VPN, you can use the basic or SSL encryption configuration.
Dual-Homed Dual-homed devices are used to bridge two networks. You can run an instance of CWI on the
dual-homed device so that you can access the secondary network. You need terminal services
or X-client software to run the CWI graphical application from the client PC. A dual-homed
device contains a client-side interface (IP address) and router-side interface (IP address).
If you have a dual-homed device in your network, you can use the standard or SSL encryption
configuration. See Figure 9 for an example.
Table 13 Firewall Ports
Component Port Direction
HTTP and HTTPS 80/443 Inbound
CORBA and CORBA SSL 10001/10002 Inbound
CORBA Notifications 49901 to 49950 Outbound
Telnet and SSH 23/22 Inbound and Outbound
Table 12 Network Information (continued)
Type Function
P
R
I
M
A
R
Y
S
E
C
O
N
D
A
R
Y
Dual-homed device
Client PC
Router
111615