02/25/2015 3793 views

Is it possible to set up a K2000 RSA behind a NAT ? Which ports to open ? How to configure appliance link ?

Thank you

0 Comments   [ + ] Show comments


All Answers

See this list:

80 -- HTTP

139 -- SAMBA share

135 -- SAMBA share

445 -- SAMBA share (Direct-hosted SMB traffic without a network basic input/output system (NetBIOS): port 445 (TCP and UDP).

22 -- SSH (outbound only for tethers)

22 -- SSH for syncing to RSA and single sign-on

389 -- LDAP (if using LDAP authentication)

636 -- LDAPS (if using secure LDAP authentication)

67 -- DHCP

69 -- TFTP

4011 -- PXE

8108 -- Media Manager

These ports also cover communication between the K2000 and an Rempte Site Appliance.

Ensure routers / firewalls are setup to allow DHCP to traverse them (BootP protocol) if clients span across them.

K2000 does not have a built-in firewall. The K2000 is not recommended for DMZ operations, only for operation on the internal network.

Answered 02/25/2015 by: Nico_K
Red Belt

  • Thank you, I've already open theses ports, the rsa can connect to the k2 but th k2 can't do it to the RSA...
    • this looks more like a DNS issue. Try the IP, if this don't help, open a ticket with support, since it is easier to check what is causing this with a webex on your env
      • I think it's a port forwarding issue, is there a way to specifie the host name as remote.server.com:2222 ?