Previous Topic: Customized Operating System Image

Next Topic: List of Related Processes

Default Port Assignments

The CA Enterprise Log Manager server is configured by default to listen on port 5250, and on ports 80 and 443 using the HTTPS protocol. CA Enterprise Log Manager processes and daemons do not run under the root account, so they cannot open ports below port 1024. As a result, the installation automatically creates a redirection (through iptables) to port 5250 for incoming user interface requests on ports 80 and 443.

The CA Enterprise Log Manager server's local operating system syslog daemon is not configured because CA Enterprise Log Manager uses its self-monitoring events to track system status. You can see other local events and report on actions taken on the local CA Enterprise Log Manager server using self-monitoring events.

A list of ports used by the CA Enterprise Log Manager environment follows:

Port

Component

Description

53

CA Enterprise Log Manager server

TCP/UDP port that must be available for DNS communications to resolve host names to IP addresses of servers such as CA Enterprise Log Manager servers, the remote CA EEM server, if configured, and the NTP server if you selected NTP time synchronization at install time. DNS communications is not needed if you map host names to IP addresses in the local /etc/hosts file.

80

CA Enterprise Log Manager server

TCP communications with CA Enterprise Log Manager server user interface over HTTPS; automatically redirected to port 5250.

111

Portmapper (SAPI)

Audit client communications with PortMapper process to receive dynamic port assignments.

443

CA Enterprise Log Manager server

TCP communications with CA Enterprise Log Manager server user interface over HTTPS; automatically redirected to port 5250.

514

Syslog

Default UDP syslog listening port; this port value is configurable.

For the default agent to run as a non-root user, the default port is set to 40514, and the installation applies a firewall rule to the CA Enterprise Log Manager server.

1468

Syslog

Default TCP syslog listening port; this port value is configurable.

2123

DXadmin

CA Directory LDAP DXadmin port, if you are using a CA EEM server on the same physical server as the CA Enterprise Log Manager server (the management server).

5250

CA Enterprise Log Manager server

TCP communications with the CA Enterprise Log Manager server user interface using iGateway.

TCP communications between:

  • CA Enterprise Log Manager server and CA EEM server
  • Federated CA Enterprise Log Manager servers
  • Agent and CA Enterprise Log Manager server for status updates

6789

Agent

Agent command and control listening port.

Note: If you do not allow outbound traffic, you will need to open this port to enable proper operations.

17001

Agent

TPC port for secure agent to CA Enterprise Log Manager server communications; this port value is configurable.

Note: If you do not allow outbound traffic, you will need to open this port to enable proper operations.

17002

ODBC/JDBC

Default TCP port used for communications between ODBC or JDBC driver and the CA Enterprise Log Manager event log store.

17003

Agent

TCP port used for communications by the Qpid message bus for r12.1 agents.

17200

Dispatcher SME Listener

TCP port used for the Dispatcher service on the agent localhost to listen for self monitoring events between agent processes.

17201

Dispatcher Event Listener

TCP port used for the Dispatcher service on the agent localhost to listen for events from client connectors.

random

SAPI

UDP ports used for event collection assigned by the port mapper; you can also configure the SAPI router and collector to use any fixed port value above 1024.