The following TCP and UDP ports are used in a single-node deployment:
| Port | Protocol | Service | FW state | Communication Path |
|---|---|---|---|---|
| 22 | TCP | SSH | Open | SSH to XCO server, and Device Connection |
| 49 | TCP | TACACS+ Authentication requests | Open if using TACACS | XCO to TACACS server |
| 80 | TCP | HTTP requests | Open | API/Web |
| 162 | TCP | HTTPs requests | Open | XCO SNMP Notifications |
| 443 | TCP | HTTPs requests | Open | API/Web, Device Connection |
| 514 | UDP, TCP | Syslog service | Open | Device to XCO |
| 3306 | TCP | MariaDB port | Connection to Database | |
| 5672 | TCP | RabbitMQ | RabbitMQ listening port | |
| 6443 | TCP | K3s | Open | Kubernetes API server listening port |
| 6514 | TCP | Secure Syslog service | Open | Device to XCO |
| 8078 | TCP | XCO Monitoring service | Open | API/Web |
| 8079 | TCP | Host Authentication | ||
| 8080 | TCP | HTTP requests | Open | API/Web |
| 10010 | TCP | Containerd service | ||
| 15672 | UDP, TCP | RabbitMQ Management | API for monitoring RabbitMQ nodes and clusters | |
| 30085 | UDP, TCP | OpenStack service | API for OpenStack integration | |
| 54322 | TCP | SLXOS Telemetry | Open for Visibility deployment | SLX stats to XCO |