Firewall port for Integration with XI on two subnets

This support forum board is for support questions relating to Nagios Network Analyzer, our network traffic and bandwidth analysis solution.
Locked
pclements
Posts: 16
Joined: Thu Jan 12, 2017 5:20 pm

Firewall port for Integration with XI on two subnets

Post by pclements »

I have the Analyser and Xi server on two different subnets separated by a firewall and I am also running local firewall on both Centos servers. What port/s are needed? In the firewall between the two system I get no denies. And when I netsat -an on each sever I do not see the other server. I have looked in the admin guide but cannot find what is required.
User avatar
cdienger
Support Tech
Posts: 5045
Joined: Tue Feb 07, 2017 11:26 am

Re: Firewall port for Integration with XI on two subnets

Post by cdienger »

TCP port 80 or 443 are required if you're following the guide at https://assets.nagios.com/downloads/nag ... ios_XI.pdf.
As of May 25th, 2018, all communications with Nagios Enterprises and its employees are covered under our new Privacy Policy.
pclements
Posts: 16
Joined: Thu Jan 12, 2017 5:20 pm

Re: Firewall port for Integration with XI on two subnets

Post by pclements »

I am sorry but I have read that document and no where does it say what ports are required to be open between the Nagios Analyser and Nagios XI.
User avatar
tgriep
Madmin
Posts: 9190
Joined: Thu Oct 30, 2014 9:02 am

Re: Firewall port for Integration with XI on two subnets

Post by tgriep »

The document doesn't specify the port numbers but when you integrate the Network Analyzer in Nagios XI, it uses an API call from the XI server to the Network Analyzer to gather the information and display / use on the XI server.
If the Network Analyzer server is not setup to use SSL, you would have to open port 80, it the server is setup to use SSL, then open port 443 between the servers.

If you setup the Network Analyzer to send alerts to the XI server using NRDP, you would have to open the same ports (80 and 443) going from the NNA server to the XI server.
Be sure to check out our Knowledgebase for helpful articles and solutions!
pclements
Posts: 16
Joined: Thu Jan 12, 2017 5:20 pm

Re: Firewall port for Integration with XI on two subnets

Post by pclements »

Thank you, This needs to be documented from the vendor so we can use the document for compliance evidence. Thanks again for your help.
User avatar
cdienger
Support Tech
Posts: 5045
Joined: Tue Feb 07, 2017 11:26 am

Re: Firewall port for Integration with XI on two subnets

Post by cdienger »

The documentation does mention using http/ssl(typically ports 80 and 443) and there are similar settings seen when integrating the two. That said, I'll ping our doc team to see if we can update the guide to explicitly state which ports are used by default. Chances are if it isn't clear to one person, it's not clear to others as well so thanks for bringing it to our attention.

Was there anything further we can help related to this or are we okay to lock the thread?
As of May 25th, 2018, all communications with Nagios Enterprises and its employees are covered under our new Privacy Policy.
Locked