<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Open port between SZ100 and firewall in SmartZone and Virtual SmartZone</title>
    <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Open-port-between-SZ100-and-firewall/m-p/18028#M1014</link>
    <description>Hello Tom,&lt;BR /&gt;&lt;BR /&gt;This is a simple matter and surely can be done.&amp;nbsp; &lt;BR /&gt;&lt;BR /&gt;Here is the ports you need, but be ware of some caveats, read at the end for details on those.&lt;BR /&gt;&lt;BR /&gt;Management interface access from outside in on port 8443&lt;BR /&gt;AP firmware upgrade and other functions port TCP 11443&lt;BR /&gt;AP Stats and other info on port 91&lt;BR /&gt;AP to controller communication and configuration updates, etc.. port 22&lt;BR /&gt;AP to controller registration on port 443&lt;BR /&gt;Wispr portal on controller 9998&lt;BR /&gt;AP hosted WISPr portal 9997&lt;BR /&gt;API access for SWIPE and other tools on port 7443&lt;BR /&gt;AP to dataplane tunneling for client data if you are tunneling to the controller on port 23233 TCP/UDP on this one&lt;BR /&gt;All ports are TCP with exception of those mentioned&lt;BR /&gt;&lt;BR /&gt;You do not need ports 12223 and 12222 unless you have legacy APs currently in ZoneDirectors that you want to migrate.&lt;BR /&gt;&lt;BR /&gt;Now, caveats:&lt;BR /&gt;&lt;BR /&gt;All ports listed above should be targeting your control plane/management plane with exception of dataplane ports listed 23233 which should be targeting your data plane of the controller.&lt;BR /&gt;&lt;BR /&gt;This is true if you configured the SZ100 in a two port group configuration, if you use one single IP for the entire unit and a single port group, then all ports should target that IP when you do your PAT at your firewall/router.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Hope this helps.</description>
    <pubDate>Sun, 15 Jan 2017 00:08:06 GMT</pubDate>
    <dc:creator>dionis_taveras</dc:creator>
    <dc:date>2017-01-15T00:08:06Z</dc:date>
    <item>
      <title>Open port between SZ100 and firewall</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Open-port-between-SZ100-and-firewall/m-p/18027#M1013</link>
      <description>Hi all,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I would like to map SZ100 to external ip, but i don't want to using Full NAT for this.&lt;BR /&gt;&lt;BR /&gt;And i would like to open those port SZ100 need in firewall.&lt;BR /&gt;&lt;BR /&gt;Please help to tell which port i need to open?&lt;BR /&gt;&lt;BR /&gt;As i know, I need to open port TCP 8443 was access the page, UDP 12222 and UDP 12223 for AP.&lt;BR /&gt;&lt;BR /&gt;But how about guest pass or other function.&lt;BR /&gt;&lt;BR /&gt;Best regards,&lt;BR /&gt;Tom</description>
      <pubDate>Sat, 14 Jan 2017 11:42:16 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Open-port-between-SZ100-and-firewall/m-p/18027#M1013</guid>
      <dc:creator>tom_cheung_5twt</dc:creator>
      <dc:date>2017-01-14T11:42:16Z</dc:date>
    </item>
    <item>
      <title>Re: Open port between SZ100 and firewall</title>
      <link>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Open-port-between-SZ100-and-firewall/m-p/18028#M1014</link>
      <description>Hello Tom,&lt;BR /&gt;&lt;BR /&gt;This is a simple matter and surely can be done.&amp;nbsp; &lt;BR /&gt;&lt;BR /&gt;Here is the ports you need, but be ware of some caveats, read at the end for details on those.&lt;BR /&gt;&lt;BR /&gt;Management interface access from outside in on port 8443&lt;BR /&gt;AP firmware upgrade and other functions port TCP 11443&lt;BR /&gt;AP Stats and other info on port 91&lt;BR /&gt;AP to controller communication and configuration updates, etc.. port 22&lt;BR /&gt;AP to controller registration on port 443&lt;BR /&gt;Wispr portal on controller 9998&lt;BR /&gt;AP hosted WISPr portal 9997&lt;BR /&gt;API access for SWIPE and other tools on port 7443&lt;BR /&gt;AP to dataplane tunneling for client data if you are tunneling to the controller on port 23233 TCP/UDP on this one&lt;BR /&gt;All ports are TCP with exception of those mentioned&lt;BR /&gt;&lt;BR /&gt;You do not need ports 12223 and 12222 unless you have legacy APs currently in ZoneDirectors that you want to migrate.&lt;BR /&gt;&lt;BR /&gt;Now, caveats:&lt;BR /&gt;&lt;BR /&gt;All ports listed above should be targeting your control plane/management plane with exception of dataplane ports listed 23233 which should be targeting your data plane of the controller.&lt;BR /&gt;&lt;BR /&gt;This is true if you configured the SZ100 in a two port group configuration, if you use one single IP for the entire unit and a single port group, then all ports should target that IP when you do your PAT at your firewall/router.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Hope this helps.</description>
      <pubDate>Sun, 15 Jan 2017 00:08:06 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/SmartZone-and-Virtual-SmartZone/Open-port-between-SZ100-and-firewall/m-p/18028#M1014</guid>
      <dc:creator>dionis_taveras</dc:creator>
      <dc:date>2017-01-15T00:08:06Z</dc:date>
    </item>
  </channel>
</rss>

