6.3 HP IBRIX X9720/StoreAll 9730 Storage Administrator Guide (AW549-96073, June 2013)
# passwd ibrix
You will be prompted to enter the new password.
Configuring ports for a firewall
IMPORTANT: To avoid unintended consequences, HP recommends that you configure the firewall
during scheduled maintenance times.
When configuring a firewall, you should be aware of the following:
• SELinux should be disabled.
• By default, NFS uses random port numbers for operations such as mounting and locking.
These ports must be fixed so that they can be listed as exceptions in a firewall configuration
file. For example, you will need to lock specific ports for rpc.statd, rpc.lockd,
rpc.mountd, and rpc.quotad.
• It is best to allow all ICMP types on all networks; however, you can limit ICMP to types 0, 3,
8, and 11 if necessary.
Be sure to open the ports listed in the following table.
DescriptionPort
SSH22/tcp
SSH for Onboard Administrator (OA); only for X9720/9730 blades9022/tcp
NTP123/tcp, 123/upd
Multicast DNS, 224.0.0.2515353/udp
netperf tool12865/tcp
Fusion Manager to file serving nodes80/tcp
443/tcp
Fusion Manager and StoreAll file system5432/tcp
8008/tcp
9002/tcp
9005/tcp
9008/tcp
9009/tcp
9200/tcp
Between file serving nodes and NFS clients (user network)2049/tcp, 2049/udp
NFS111/tcp, 111/udp
RPC875/tcp, 875/udp
quota32803/tcp
lockmanager32769/udp
lockmanager892/tcp, 892/udp
mount daemon662/tcp, 662/udp
stat2020/tcp, 2020/udp
stat outgoing4000:4003/tcp
reserved for use by a custom application (CMU) and can be disabled if not used
Configuring ports for a firewall 35