Network communications external to the cluster#

Details in this section are all based on the default settings, which can vary depending on the application setup and network design (such as NAT) of the solution. Adjust accordingly. Where a dependant is noted, this is fully dependant on the configuration with no default.

These communications are all related to communications with devices external to the cluster. Details are provided for the following:

  • Outbound communications to devices from the application/unified nodes

  • Outbound to external systems from the proxy node

  • Outbound to external systems from all nodes

  • Inbound communications from external systems to the proxy node

  • Inbound communications to all nodes

  • On-line help links to external documentation

Outbound communications to devices from the application/unified nodes

Communication

Protocol

Port

Cisco Unified Communications Manager (UCM)

HTTPS

TCP 8443

Cisco Unity Connection (CUXN)

HTTPS

TCP 443

Webex

HTTPS

TCP 443

LDAP directory

LDAP

TCP/UDP 389 and/or 636(TLS/SSL)

MS PowerShell Proxy Node

HTTPS

TCP 5986

Microsoft 365 (Graph API)

HTTPS

TCP 443

Zoom

HTTPS

TCP 443

Outbound to external systems from the proxy node

Communication

Protocol

Network Protocol and Port

API Sync and Async responses

HTTPS

TCP 443

Northbound Notification messages

HTTPS

dependant

Microsoft Teams / Microsoft Exchange

HTTPS

443

VOSS Cloud Licensing Service

HTTP

HTTPS

80

443

Outbound to external systems from all nodes

Communication

Protocol

Port

SNMP

SNMP

TCP/UDP 162

SFTP as required for backup destinations

SFTP

TCP 22

NTP

NTP

UDP 123

Inbound communications from external systems to the proxy node

Communication

Protocol

Port

Web Access

HTTPS

TCP 443

API Request

HTTPS

TCP 443

Inbound communications to all nodes

Communication

Protocol

Port

SSH and SFTP for management and files transfers

SFTP/SSH

TCP/UDP 22

On-line Help links to external documentation

To have access to the online help website URL, you may need to request that your network administrator provides access to the website.