Need alternative port open for VIPs on ACE

My ACE is almost completely configured - with VIPs, farms, real servers, redirects etc. Port 80 and 443 are working as expected and web requests are getting routed appropriately.
The need has arisen however, to allow a non-traditional port to be allowed/open to certain websites (to certain VIPs). (As some background - this is an SFTP style client based connection. ) 
My ACL configuration is open - ip any any - but i even created one specific to this port number. (let's just say it's 7777 for now). I've done captures on the firewall to make sure that traffic from external requests is getting through it, and when I try to connect to the real server address (either NATed or internally), it connects just fine. I am unable to see the connection attempts in the logging on the ACE and the error message that the client app gets is "connection refused"
I'm not good with policy maps or class maps, so I'm not sure if that's where I need to be looking. I suppose that the issue is at the VIP level though since the server IPs work fine, so I need to understand what gets processed via that IP that doesn't via the others.
So if I currently have websites on the ACE configured to accept, redirect, and loadbalance for port 80 and 443, but I now need them to do the same on port 7777, what changes need to be applied and where?
I can paste any config info if someone can help me. Thanks.

Good afternoon,
This new port would be a completely new VIP, so, you would need to create a new class-map for it.
Daniel

Similar Messages

  • Which ports need to be open for messages and facetime to work properly?

    I noticed that Messages no longer works since upgrading to Yosemite on my work network. But it did when i was in Mavericks. Did they change something in Messages in the upgrade that would cause it to no longer work? ports?
    I'm behind my work firewall, which ports need to be open for messages to work properly?

    Just make sure your 9001 port is open.
    Hope this works..
    Hamid

  • What ports need to be opened for Podcasting?

    To all,
    I am a little lost. We have a server which is inside our firewall. What we're trying to do is to use this server as a test bed for podcasting. Our network admin is going to set it up so that it's behind the firewall but we can still access the content from home or anywhere. Now my question. The admin has asked us what ports need to be opened for podcasting. We have no idea. Is this something we need to setup on the server we are using or is there something else.
    FYI - We are using a Windows NT server...I know, I know, I need to upgrade.
    Any help is greatly appreciated. Thank you in advance.
    zanm
      Other OS   windows NT server

    Podcasting is not streaming on content, only downloading. It is basically a blog with an attachment in the RSS feed. Only port 80 (normal web port) needs to be able to go through the firewall.

  • What TCP/UDP ports need to be open for VPN Client version 4.8?

    What TCP/UDP ports need to be open for Cisco VPN Client version 4.8 to work?
    Thanks,

    Normally, you need the following ports and protocol :
    UDP 500
    UDP 4500
    ESP
    In case, you are using IPSec over TCP you have to open, TCP port 10000 or any other port you want to use for IPSec connections (Its configurable).
    -Kanishka

  • Client need to be opened for what all objects?

    Hi Experts,
    I need to list all the objects for which clients need to opened for customizing/master data download, for ex. when we are downloading condition records we need client to be in open/modifiable state, So what I need now is suggestions based on your experience wherever you feel that cleint needs to be opened for this activity .
    Thanks for sharing your experience.
    With Regards,
    Mayank Choudhary

    Hi Mayank,
    Even I tried for the list of all cross-client download objects in vain. I figured a work around for this and found it helpful.
    To check wether a particular object is downloading cross-client data:
    1) Determine all the tables involved by executing CRM table SMOFTABLES with the adapter object name. (Ex: DNL_CUST_SHIP downloads data from the following tables: TINC, TINCT, TPRIO, TPRIT, TVSB, TVSBT.)
    2) In order to check wether these tables are cross client or not, execute table DD02L in R/3 system with all the tables determined in step 1.
    Ex: DNL_CUST_SHIP
    Table  : DD02L
    Table name----
    Client-specific
    TINC----
    X
    TINCT----
    X
    TPRIO----
    X
    TPRIT----
    X
    TVSB----
    X
    TVSBT----
    X
    This means that none of the tables invloved in DNL_CUST_SHIP download are cross-client and can be downloaded without opening the client.
    If there are any client independent tables involved then we need to open client and perform download.
    Ex. DNL_CUST_CNDALL
    The below mentioned tables are involved in DNL_CUST_CNDALL object download and are cross-client and hence the client needs to be open while downloading the object.
    TMC1K
    TMC1D
    TMC1
    T681
    T682
    T682I
    T682T
    T682Z
    Hope this helps
    Regards,
    Aj K

  • Does Mail need to be open for emails to appear in Notifications?

    I love the notifications feature in Mavericks, and in particular, I like that incoming emails pop up like in iOS. My question is, does Mail app need to be open for emails to appear in Notifications?

    On the Mac, Mail needs to be open to be notified of incoming Mail. I tend  to leave the app open all the time, just collapsed into the Dock, getting notified by Notification Centre as emails arrive and leaving a red badge on the Mail icon in the Dock if Mail arrived whilst I was away.

  • Which ports and ACL ( servers) need to be opened for Jabber Video

    Hi All,
    We are Cisco partners ( ODC at Aricent New Delhi India)  working for multiple Cisco projects.
    We want to use Jabber Video for communication but as partners ACL ( Server/ports ) need to be opened to access the Jabber video servers.
    Can somebody list me all the Jabber Server/Ports to which Jabber client need access to.
    Can somebody please respond asap as we have opened an EXAM case for opening the ACL and need the list asap.
    Thanks
    Saurabh    

    Thanks Hoan for the quick reply it answers part of my question.
    I also want to know for succeessful video calls which all servers i need access to for eg first it tries on
    https://sjc1-movi-pr-bootproxy-vip.ciscojabbervideo.com/endpoint/configuration
    then it goes to another server's for logging in etc.
    I  want to know the list of all servers so that ACL's can be opened for them.
    Thanks
    SAurabh    

  • What is the Firewall ports need to be open for TED distribution working properly

    Hi ,
    May I know what ports need to be open at the firewall in order the TED
    distribution to be working properly.
    I suspect it is firewall problem because the inventoried server which
    is install at the same segment with the TED distributor server, I manage to
    push the policy and collect inventory data , but for those inventoried
    server which is install at the remote site, I fail to push the TED into the
    server. At the TED distributor server, the log say that computer refused
    connection. And there is a firewall in between the TED distributor server
    and the remote inventoried server.
    Thank you.
    Steven Foong

    TED is using 1229
    Ron
    <[email protected]> wrote in message
    news:X7lAe.2193$[email protected]..
    > Hi ,
    >
    > May I know what ports need to be open at the firewall in order the
    TED
    > distribution to be working properly.
    >
    > I suspect it is firewall problem because the inventoried server which
    > is install at the same segment with the TED distributor server, I manage
    to
    > push the policy and collect inventory data , but for those inventoried
    > server which is install at the remote site, I fail to push the TED into
    the
    > server. At the TED distributor server, the log say that computer refused
    > connection. And there is a firewall in between the TED distributor server
    > and the remote inventoried server.
    >
    > Thank you.
    >
    >
    > Steven Foong

  • Ports that need to be Opened for OBIEE 11g Installation on Solaris Box

    What ports need to be opened by the systems admin on a solaris box to start OBIEE 11g installation

    There is lot difference what you said now and in your initial post...
    For outside communication means? you want to access BI outside the network using url?
    in that case is it not weblogic port? check with your network guys they'll take care of it.
    if you are looking for network with other systems internally then you may/have to open as per that link.
    hope this helps

  • What ports need to be open for device enrollment?

    I'm able to install the trust profile on an iPhone, but when I attempt to "Enroll" my device and I click "Install" it begins the process,
    Installing Profile, Generating Key, Enrolling Certificate and gets stuck and reports a network issue.
    I'm also hoping we can get our hands on some proper lion documentation. The resource page is pretty bleak right now.

    Yea they should have that info on the kbase.   I have been reading up on this as well, as my clients never worked and finding out you need ports open.
    I believe this is correct, if not someone correct me:
    Ports for Profile Manager - 2195, 2196, 5223, 1640, 80, 443   Apple Server block to open too:  17.0.0.0/8
    TCP Port 2195 and 2196 should be "oubound" from Profile Manager Server to 17.0.0.0/8.
    TCP Port 5223 "outbound" from LAN for clients to 17.0.0.0/8
    TCP Port 443 and 1640 "inbound" to Profile Manager server.  I would think port 80 as well, but any login I would put a cert on and use only 443.  Not sure if 80 is really needed.

  • Do router/firewall ports need to be opened for higher bandwidth?

    Currently I use iChat between myself and my mom across town with decent results. The video is blurred but extremely smooth.
    We are both on broadband with different ISPs (Telus & Shaw) with our own routers. None of the ports on either router are open for iChat yet we connect fine.
    If I opened up iChat ports on both routers will that allow more bandwidth to flow through the video resulting in less blur?

    Hi
    No it will not give any more bandwidth, seeing you have iChat working i would leave the ports alone
    Have you both set the Quicktime settings, goto sys prefs/quicktime/streaming/streaming speed set what you get from your ISP go no higher then 1.5mbps(dont use automatic)
    In ichats prefs click on video and change bandwidth limit to NONE.
    Restart iChat.
    Tony

  • Multiple port opened for one db connection.

    My java standalone server connects to sql server via MS sql JDBC driver(v 2.2). I saw so many port in Time_wait state to the db server in netstat. I did some search on the internet, found that this the nature of TCP/IP protocol. and we can live with it without modifying Windows config.
    however, I noticed on my side, there are two ports involved for each database connection. I think this is one of the reasons I have so many ports in Time_wait state.
    To me, it seems like the request to db server is done on one port, the response from db server is done on another port. is this implemented on JDBC driver layer or on sql server?
    please help !!!

    I saw so many port in Time_wait state to the db server in netstat. This suggests that you are not using any type of connection pooling, but instead are opening and closing connections pretty quickly, although it depends on what you mean by "many"; 10 or 100 might be a good number for a busy system, depending on your application. On some operating systems under high load, it could potentially be a problem if you are getting into many hundreds or thousands, but other issues usually drive people to using connection pools long before this issue would.
    however, I noticed on my side, there are two ports involved for each database
    connection. I think this is one of the reasons I have so many ports in Time_wait state.Not really. That might double the number, but the real reason is a lot of connection closes (real connection closes, not closes on a pooled connection).
    To me, it seems like the request to db server is done on one port,
    the response from db server is done on another port.
    is this implemented on JDBC driver layer or on sql server?That is totally up to the driver vendor; there's nothing you can do about it.
    please help !!!I'm not sure what you're problem really is - you might be worrying about something that isn't a problem. Is something bad happening that you're trying to fix, or did you just notice these expiring ports and start worrying about them?

  • Regarding ports opening for patching client machine in DMZ.

    Hi ,
    Regarding SCCM patching to Client Machine on DMZ.
    I have SCCM server and WSUS server
    both are different machines.My software update point is configured to port 8530.
    I have a client machine in DMZ and want to do patching for the DMZ machine.
    Ports opened from my DMZ machine to SCCM server are 445,135,80,443,8530
    1.Do the above ports are fine to do patching ?
    2.Do we require communication between DMZ and SCCM server on port 8530 for patching on DMZ machine?
    Regards,
    Arjun

    Hi Arjun,
    The answer to the first question you will find in the link Torsten posted.
    The answer to the second question: Whether you should open port 8530 depends on where your Software Update Point and where the Site Server are. It must be opened for the following communication:
    Client -- > Software Update Point
    Site Server < -- > Software Update Point
    Software Update Point -- > Upstream WSUS Server
    If you have only a client in DMZ the port must be opened for the communication with the SUP.
    Regarding the 3rd statement: If you are not able to telnet to the port on the server, this would mean that the communication is blocked somehow. You must make sure, that you are able to telnet to it.
    Hope this helps. Regards,
    Stoyan

  • Email Port Open for ASA5505

    Hi all ;
    Just posted a question that when I want to let email to come through the ASA5505 from outside to DMZ and Inside network, are the below command lines correct and good enough?
    access-list  outside_DMZ extended permit tcp outside-network-ip dmz-network-ip eq imap4
    access-list outside_DMZ extended permit tcp outside-network-ip dmz-network-ip eq pop3
    access-list outside_DMZ extended permit tcp outside-network-ip dmz-network-ip eq smtp
    access-list outside_inside extended permit tcp outside-network-ip inside-network-ip eq imap4
    access-list outside_inside extended permit tcp outside-network-ip inside-network-ip eq pop3
    access-list outside_inside extended permit tcp outside-network-ip inside-network-ip eq smtp
    access-group outside_DMZ in interface outside
    access-group outside _inside interface outside
    Are there any other TCP ports want to be allowed and other command lines need to be added?
    Thanks!
    Regards,
    tangsuan

    Hi Jcarvaja :
    Thanks for your reply!
    1. For inside to outside, I have used a dynamic nat as below :
    nat (inside) 20 192.168.100.0 255.255.255.0
    global (outside) 20 192.168.50.171-192.168.50.180
    As such, it should be not necessary for static one to one from inside to outside, right?
    2. For dmz to outside, I use the static nat and so each individual mapped IP is need to create. For example :
    static (dmz,outside) 192.168.20.x 192.168.50.x netmask 255.255.255.255
    whereby 192.168.20.x is host at outside network and 192.168.50.x is at dmz network. This will be ok, right?
    3. As for the ACL, I can group all the hosts (servers or stations) at dmz and inside and applied one ALC as below :
    access-list Email_in extended permit tcp object-group Outside_Network object-group hosts_dmz_inside eq smtp
    access-list Email_in extended permit tcp object-group Outside_Network object-group hosts_dmz_inside eq pop3
    access-list Email_in extended permit tcp object-group Outside_Network object-group hosts_dmz_inside eq imap4
    Let me know is it any problem, thanks!
    regards,
    tangsuan

  • Keep a Socket Server connection/port open for incoming requests

    Hi,
    I have a socket server which listens to the incoming messages. The problem is that the socket server terminates the socket connection once it receives a message.
    I want this Socket server to keep on running and process all the requests it receives.
    Can you please advise which stream shall be kept open for this to be achieved? Below is the code for your reference.
    Thanks!
    import java.net.*;
    import java.io.*;
    public class SocketServer
         public static void main(String[] args) throws IOException
                 ServerSocket serverSocket = null;
                 String result = null;
                 SocketServer sockServer = new SocketServer();
                 try
                          serverSocket = new ServerSocket(4444);
                 catch (IOException e)
                          System.exit(1);
                 Socket clientSocket = null;
                 try
                      clientSocket = serverSocket.accept();
                          clientSocket.setSoTimeout(30000);
                 catch (IOException e)
                      System.exit(1);
                 PrintWriter out = new PrintWriter(clientSocket.getOutputStream(), true);
                 BufferedReader in = new BufferedReader(new InputStreamReader(clientSocket.getInputStream()));
                 String inputLine;
                 inputLine = in.readLine();
                 if((inputLine == null) || (inputLine.length() < 1))
                          throw new IOException("could not read from request stream");
                 else
                          result = sockServer.parseString(inputLine);
                          out.println("|0|OK|");
              InputStream is = null;
                  FileOutputStream fout=null;
                  BufferedInputStream bufIn = null;
                  HttpURLConnection con = null;
                  ByteArrayOutputStream baos = null;
                    try
                   URL url = new URL("http","10.176.96.64",8080,result);
                   con = (HttpURLConnection)url.openConnection();
                   is = con.getInputStream();
                   bufIn = new BufferedInputStream(is);
                   fout=new FileOutputStream("Z:\\Clips\\Cache\\"+result);
                   baos = new ByteArrayOutputStream();
                   int c = bufIn.read();
                   while(c != -1)
                        baos.write(c);
                        c = bufIn.read();
                   baos.writeTo(fout);
              catch(MalformedURLException mue)
                   System.err.println ("*********In Download File: Invalid URL");
              catch (IOException ioe)
                   System.err.println ("*********In Download File: I/O Error - " + ioe);
              finally
                   try
                        baos.close();
                        bufIn.close();
                        fout.close();
                        is.close();
                        con.disconnect();
                   catch(Exception ex)
                        System.out.println("*********In Download File: Exception Occured: "+ex.toString());
                      out.close();
                      in.close();
                      clientSocket.close();
                      serverSocket.close();
    }

    In a truly unexpected turn of events.. this question has been crossposted.
    http://forum.java.sun.com/thread.jspa?threadID=5127579
    Good job singalg. I highly recommend that instead of accepting that there is anything wrong with your understanding of how this should work and reviewing the tutorials you should instead repost this question daily, Each day choosing a different forum.

Maybe you are looking for

  • ITunes wont recognise iPhone

    iPhone 5s model A1457. I have two Windows 7 64 bit laptops, one has iTunes 11.4 running, the other has the latest iTunes 12.0.1 iOS was 7.something and I stupidly tried to update overthe air to 8.1.2 Something went wrong and it is stuck in recovery m

  • Why there aren't any Apple stores in Morocco?

    I want to buy an iphone 5 but in morocco there aren't any Apple Stores. So if i buy it from someone else there won't be any warranty. What to do? Thanks.

  • JMS "cannot resolve symbol" error

    I am a bit new to JMS... I am trying to compile a sample code available on net to receive message from a queue.... I am using MQSeries JMSAdmin as the JMS provider... however the code is giving the following compile time error... MqJmsProp.java:257:

  • Which Forms/Reports Builder to use for R12.2.4 Apps?

    We are working on upgrading from R12.1.2 to R12.2.4 and I'm reading the Oracle E-Business Suite Developer's Guide Release 12.2 (E22961-12) from March 2015.  On page 1-5 it says to use Oracle Forms and Reports Developer 10g.  However when I go to down

  • New Install ISO

    I'm sorry if this is the wrong section to ask but I thought it was appropriate. I was wondering if Arch developers had any plans or a release date for an updated 2011 installation ISO? I've been using the May 2010 (latest) release and it's becoming a