HP 800 User Manual page 554

Procurve network access controller 800
Hide thumbs Also See for 800:
Table of Contents

Advertisement

Ports used in NAC 800
Port
Parties
Ports used for re-authentication:
22 (TCP)
ES to switch
23 (TCP)
161 (TCP)
1812 (TCP)
Switch to ES
Ports used for DHCP and domain controllers:
88 (TCP)
ES to DC/DHCP
135
159 (TCP)
server
-
135-159 (UDP)
389 (TCP)
1025 (TCP)
1026 (TCP)
3268 (TCP)
88 (TCP)
MS/ES to DC/
135
-
159 (TCP)
DHCP server
135-159 (UDP)
389 (TCP)
1025 (TCP)
1026 (TCP)
3268 (TCP)
Table E-1.
Ports in NAC 800 (cont.)
E-4
Description
Used when you select the
connection to device
button, and
when an endpoint is re-authenticated
by the switch. (SSH)
NAC 800 user interface:
System configuration
>>Quarantining
>>802.1X Quarantine method
>>Add 802.1X device
>>Select any device type
>>Select the SSH Connection method
Used to relay credentials to RADIUS
when you are using the local RADIUS
server.
DHCP Server and Domain Controller
behind NAC 800:
In DHCP mode, when your DHCP server
and Domain Controller are behind NAC
800, you must specify ports 88, 135 to
159, 389, 1025, 1026, and 3268 as part of
the address. If you do not specify a
DHCP address, users are blocked. If
you specify only the IP address with no
port, endpoints are not quarantined,
even for failed tests.
DHCP Server and Domain Controller
NOT behind NAC 800:
In DHCP mode, if your domain
controller is not situated behind NAC
800, you must configure your router to
allow routes from the quarantine area
to your domain controller on ports 88,
135-159, 389, 1025, 1026, and 3268.
Comments
test
Not configurable
Not configurable
Configure in the NAC 800 user
interface:
Home window
>>System configuration
>>Accessible services
Configure on the router between
Domain Controller and Quarantine
Area

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve nac 800

Table of Contents