IBM Support

Ports, Addresses, Rules, Inbound, Outbound for VPN Remote Support

Troubleshooting


Problem

This document explains that customer firewalls need to have certain PORTS open to enable STRRMTSPT *VPN to work.

Resolving The Problem

Customer firewalls need to have certain PORTS open to enable STRRMTSPT *VPN to work. Following is a list of ports that the customer needs to have open on their firewall and the IP addresses that they need to have these ports open to:


IP Filter RulesIP Filter Values
UDP inbound traffic filter ruleAllow port 4500 for VPN gateway addresses 207.25.252.196 and 129.42.160.16
UDP inbound traffic filter ruleAllow port 500 for VPN gateway addresses 207.25.252.196 and 129.42.160.16
UDP outbound traffic filter ruleAllow port 4500 for VPN gateway IP addresses 207.25.252.196 and 129.42.160.16
UDP outbound traffic filter ruleAllow port 500 for VPN gateway IP addresses 207.25.252.196 and 129.42.160.16
ESP inbound traffic filter ruleAllow ESP protocol (X'32') for VPN gateway IP addresses 207.25.252.196 and 129.42.160.16
ESP outbound traffic filter ruleAllow ESP protocol (X'32') for VPN gateway IP addresses 207.25.252.196 and 129.42.160.16

[{"Product":{"code":"SWG60","label":"IBM i"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Component":"Remote Support","Platform":[{"code":"PF012","label":"IBM i"}],"Version":"Version Independent","Edition":"","Line of Business":{"code":"LOB57","label":"Power"}}]

Historical Number

519566316

Document Information

Modified date:
11 November 2019

UID

nas8N1013053