beautypg.com

2 configuring a cca oob vg server – IBM Tivoli and Cisco User Manual

Page 324

background image

306

Building a Network Access Control Solution with IBM Tivoli and Cisco Systems

4. Click Finish to complete the installation (Figure 7-74).

Figure 7-74 Completed installation

7.2.2 Configuring a CCA OOB VG server

The CAM uses Java Remote Method Invocation (RMI) for parts of its
communication with the CAS, which means it uses dynamically allocated ports
for this purpose. For deployments that have a firewall between the CAS and the
CAM, we recommend setting up rules in the firewall that allow communication
between the CAS and the CAM (bi-directional) on the ports shown in Table 7-10.

Table 7-10 TCP port requirements for firewalls

CCA version

Required ports

3.6(x)

TCP ports 80, 443, 1099, 8995, 8996

3.5(x)

TCP ports 80, 443, 1099, 32768–61000