Skip to main content

AS-ACS Windows-LightsOut-Ring1 Template Rules

Firewall Template Rules

Traffic Inbound to the Firewall

FromToPortsDescription
as-idg-windows-pbh-ring1destination_hosttlr1_loutPersonal Bastion LightsOut
as-idg-nagios-monitoringdestination_hosticmp, pingPing
as-idg-nagios-monitoringdestination_hosttlr1_httpsWeb Services

Traffic Outbound from the Firewall

FromToPortsDescription
source_hostas-idg-nagios-monitoringICMP,PingOutbound Ping (monitoring)
source_hostas-idg-nagios-monitoringtlr1_httpsOutbound Web Services
source_hostas-idg-windows-pbh-ring1AnyAny to Personal Bastion

Address, Service & Object Definitions

Object / GroupMembers
Address & Address Groups
as-idg-windows-pbh-ring1171.67.47.64/28
as-idg-nagios-monitoring171.67.217.114
171.67.217.115
Service & Service Groups
tlr1_loutTCP 22, 80, 443, 3668, 5900-5901 | UDP 623
tlr1_httpsTCP 443

Roles

Template Owner

Responsible for determining, maintaining and modifying the template rules and membership of the different server groups. The application owner is notified regarding any changes to the template.

Current Template Owners

  • Jon Pilat
  • Brian Katyl
  • Stacy Lee

System Administrators

Request rule approval from the application owner.

ISO Security

The ISO group will audit the rules and make recommendations as needed or upon request from either the System Administrators or the Application Owners. In addition, any changes to this template must be reviewed by ISO prior to implementation.

Last modified