You are on page 1of 1

Check Point R77 and R80 Communication Ports Heiko Ankenbrand - Version 1.

4
Client Machine with SmartDasboard Management Server Gateway
443 Browser Based Authentication
GW Ext GW
Smart 18190 CPMI Mng. 18191 CPD (SIC, Policy inst.) 500 UDP IKE Phase1/Pase2
aktiv VPN VPN
Dash
18210 FW1_ica_pull 18192 CPD_amon (SIC, Policy inst, GET Topology) IP 50 ESP spi=0x…
Board
19009 CPM 18211 CP_ica_push (SIC) 1701 UDP L2TP

443 SmartLog/ SmartView 257 Log (Logging) 4500 UDP NAT-T

18202 CP_RTM
Check Point 443 (GW CPUSE) [1]
18183 FW1_sam IP 50 ESP Secure
443 Update
Update Server 443 Update Client
Internet 18210 FW_ica_pull 500 UDP IKE
VPN
18208 FW1_CPRID (Remote Install) 500 IKE over TCP

18190 CPMI Reporter 18184 FW1_lea 257 LOG Sand- 18194 temain 4500 UDP NAT-T encapsulation
Event blast
18205 CP_reporting 18186 FW1_omi-sic 18191 CPD 1344 ICAP 443 visitor M., SSL, Pol. Upd
ICAP
18191 CPD 18210 FW_ica_pull TE 22/ 443 SSH / https GUI 264 Topology download (old)

22/ 443 SSH / https GUI 18190 CPMI 18221 CP_redundant 22/ 443 SSH / https GUI 18231 Policy Server Login (old)
Mng.
18266 CP_seam 18211 CP_ica_push standby 443 Update (CPUSE) 2746 UDP encap. Proto 50 ESP (old) .
Event
[1]
Agent
18192 CPD_amon

22/ 443 SSH/ https GUI VPN-Tunnel


UTM-1 18234 UDP Tunnel Test
25 SMTP 9282 udp Logging 9281
Edge
443 SSL, Policy Upd.
9282 udp Policy-Install 9281 981 https
18233 UDP SCV update (old)
9282 udp Edge-Einbindung 9280 22/ 443 SSH/ https GUI
18231 Policy Server Login (old)
22/ 443 SSH/ https GUI
Radius 1812 UDP Radius authentication

5500 UDP RSA ACE authentication


RSA 8116 UDP CCP
Gateway 2
Cluster
49 UDP TACACS authentication XL Cluster
TACACS IP 112 VRRP XL
67/ 68 UDP DHCP VRRP
DHCP VRRP

Mail 389/ 636 LDAP/ LDAPS 389/ 636 LDAP/ LDAPS


25 SMTP LDAP
Server 389/ 636 LDAP/ LDAPS
IA
18193 OPSEC App. Monitoring 123 UDP NTP
OPSEC NTP 123 UDP NTP PC
18184 Log Export API (LEA) 900/ (901) http/ https Client-Auth.
Browser
^^ 18185 Objects Manag. Interf. 53 UDP DNS DNS 53 UDP DNS 259 telnet Client-Auth. Telnet

18187 Event Log. API (ELA) 161 UDP SNMP 161 UDP SNMP 443 Browser Based Auth. Terminal
SNMP Server
162 UDP SNMP Trap 162 UDP SNMP Trap 443 Terminal Server Agent Agent
18187 ELA + SIC

1813 Radius Accounting


Radius
135 ADQuery
AD GW
135 ADQuery (random port) ALL_DCE_RPC 15105 Identity Sharing PEP
IA
IA
(random port) ALL_DCE_RPC 28581 Id. Sharing PEP > PDP
135 ADQuery 443 https
Legend: .
Identity
(random port) Collector
new R80.x ports ALL_DCE_RPC IP 224.0.0.5 OSPF
routed IP 224.0.0.6 OSPF Router
default R7x + R80.x FW communication ports LDAP 389/ 636 LDAP/S
IP 224.0.0.9 RIPv1/v2 (only Splat)
R7x + R80.x communication ports 5222/ 8910 ISE 520 UDP
Cisco
ISE
R7x + R80.x config ports ad GUI ports 2055 UDP Netflow 179 BGP

Netflow

You might also like