Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Change Ports H4K

Status
Not open for further replies.

RonnieDio1

Technical User
Nov 21, 2011
85
BR
Hi
You can block ports for security reasons in Hipath 4000 v5 ?
Would be 80 , 443 and 22. Or change the port .

Thanks
 
I would tell you to go into the firewall that's buried in assistant somewhere, but I don't know what port Assistant does it's business on. I know it runns https, but not sure if it's 443 or some other port. If you don't have your system visible to the outside who are you worried about, just out of curiosity?


Don Bruechert, Voice Comm Analyst II
CareTech Solutions @ Holy Family Memorial
Manitowoc, WI, USA
 
You could also secure the interface by configuring the management address of the device on a privately addressed network (makes it a little difficult for people "outside" the network from reaching it). Talk to the engineers/techs who manage the network switches/routers and ask them to set up an IP Access list for your device. They would be able to limit access to your device from IP addresses or IP ranges you desire. If you get your IP address dynamically (vs static) each time you log in, ask your server/system/network engineers to give you an IP address reservation so your laptop or management workstation will have the same IP address all the time when you are on a network which you will manage your HiPath from. There are many ways to accomplish what you desire. I have shared some of the external ways (not making changes on the HiPath) except to a private addressing if it is not configured with a private address already.
 
Thanks for answers

Customer said he had no lock because of IPDA, and there asked to change the PABX.
Move would have a bad effect on the operation of the Hipath
 
Yes, some systems are configured in Hipath Backup and Restore to use the Assistant/Management IP of the 4000 as the server address for the AP Backup Server. You don't want to interfere with that.

Don Bruechert, Voice Comm Analyst II
CareTech Solutions @ Holy Family Memorial
Manitowoc, WI, USA
 
With changes to the HiPath IP network settings being "prohibited", the easiest thing to do for security is to have the network admins block access from the "outside world" via the main or company's edge firewall, or from the directly connecting network switch/router ensuring every component of the phone system, stations, intercoms, and such are at the "top" of the access list for allowed devices. He/She could do this within a single access list when placed properly. Experienced network admins will know how to get this done for you easily. Just let them know what you want. I hope I understand what you're trying to accomplish as well. Note: When I say easily, it does not mean it will require no planning and won't take time to put a good access list together; easily means it is something they know how to do well.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top