The CA Enterprise Log Manager server is configured by default to listen on port 5250, and on ports 80 and 443 using the HTTPS protocol. CA Enterprise Log Manager processes and daemons do not run under the root account, so they cannot open ports below port 1024. As a result, the installation automatically creates a redirection (through iptables) to port 5250 for incoming user interface requests on ports 80 and 443.
The CA Enterprise Log Manager server's local operating system syslog daemon is not configured because CA Enterprise Log Manager uses its self-monitoring events to track system status. You can see other local events and report on actions taken on the local CA Enterprise Log Manager server using self-monitoring events.
A list of ports used by the CA Enterprise Log Manager environment follows:
Port |
Component |
Description |
---|---|---|
53 |
CA Enterprise Log Manager server |
TCP/UDP port that must be available for DNS communications to resolve host names to IP addresses of servers such as CA Enterprise Log Manager servers, the remote CA EEM server, if configured, and the NTP server if you selected NTP time synchronization at install time. DNS communications is not needed if you map host names to IP addresses in the local /etc/hosts file. |
80 |
CA Enterprise Log Manager server |
TCP communications with CA Enterprise Log Manager server user interface over HTTPS; automatically redirected to port 5250. |
111 |
Portmapper (SAPI) |
Audit client communications with PortMapper process to receive dynamic port assignments. |
443 |
CA Enterprise Log Manager server |
TCP communications with CA Enterprise Log Manager server user interface over HTTPS; automatically redirected to port 5250. |
514 |
Syslog |
Default UDP syslog listening port; this port value is configurable. For the default agent to run as a non-root user, the default port is set to 40514, and the installation applies a firewall rule to the CA Enterprise Log Manager server. |
1468 |
Syslog |
Default TCP syslog listening port; this port value is configurable. |
2123 |
DXadmin |
CA Directory LDAP DXadmin port, if you are using a CA EEM server on the same physical server as the CA Enterprise Log Manager server (the management server). |
5250 |
CA Enterprise Log Manager server |
TCP communications with the CA Enterprise Log Manager server user interface using iGateway. TCP communications between:
|
6789 |
Agent |
Agent command and control listening port. Note: If you do not allow outbound traffic, you will need to open this port to enable proper operations. |
17001 |
Agent |
TPC port for secure agent to CA Enterprise Log Manager server communications; this port value is configurable. Note: If you do not allow outbound traffic, you will need to open this port to enable proper operations. |
17002 |
ODBC/JDBC |
Default TCP port used for communications between ODBC or JDBC driver and the CA Enterprise Log Manager event log store. |
17003 |
Agent |
TCP port used for communications by the Qpid message bus for r12.1 agents. |
17200 |
Dispatcher SME Listener |
TCP port used for the Dispatcher service on the agent localhost to listen for self monitoring events between agent processes. |
17201 |
Dispatcher Event Listener |
TCP port used for the Dispatcher service on the agent localhost to listen for events from client connectors. |
random |
SAPI |
UDP ports used for event collection assigned by the port mapper; you can also configure the SAPI router and collector to use any fixed port value above 1024. |
Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |