cancel
Showing results for 
Search instead for 
Did you mean: 

Firewall ports to open between wireless clients and vSZ controller

bicky_budha
New Contributor III


Hi, we have vSZ.

vlan 100 - vSZ, DHCP, DNS, DC
vlan 200 - Windows domain devices
vlan 50 - Guest WiFi (internet only vlan)

We have ACL on core switch to restrict ports/traffic between vlans.
If I permit ip traffic from vlan 50 devices to vSZ then it gets an IP.
permit ip 0.0.0.0 255.255.255.255 10.1.10.60 0.0.0.0

I would like to only allow required ports for the wireless devices to connect to the WiFi and get IP address. 
Which TCP/UDP ports do I need to permit?

Any help would be much appreciated, thank you.

 


Core switch has ACL to allow DNS traffic from vlan 50 to vlan 100.
What ports do I need to allow for the wireless devices on vlan 50 to contact vSZ?

1 REPLY 1

abilashpr
Contributor III

Dear bicky_budha

Please allow dhcp service udp port 67 and 68 and test, I could only see only 1 port not sure if that would fit your case.

Please refer below link.

https://docs.commscope.com/bundle/sz-612-basiccontrollersettings-sz300vsz/page/GUID-078C00BE-7543-44...

HTH!

Regards,

Abilash