<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CVO in Azure - NSG Rules (Kerberos) in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161573#M36905</link>
    <description>&lt;P&gt;Hi tyrone_owen,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As mention before by &lt;a href="https://community.netapp.com/t5/user/viewprofilepage/user-id/47696"&gt;@ttran&lt;/a&gt;, port 749 is used for the kdc (kerberos) administration daemon.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P data-unlink="true"&gt;Here is a link to the &lt;A href="https://docs.netapp.com/us-en/occm/reference_networking_azure.html" target="_self"&gt;networking requirements for CVO in Azure&lt;/A&gt; incase you were wondering all the ports that are used in the SG.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let us know if you have any additional questions regarding CVO in Azure or cloud in general&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Fri, 27 Nov 2020 04:46:55 GMT</pubDate>
    <dc:creator>darb0505</dc:creator>
    <dc:date>2020-11-27T04:46:55Z</dc:date>
    <item>
      <title>CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161493#M36887</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I've noticed that the default Network Security Group for CVO has an allowed incoming rule for Kerberos TCP 749. Can anyone articulate why this is please?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 10:44:15 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161493#M36887</guid>
      <dc:creator>tyrone_owen_1</dc:creator>
      <dc:date>2025-06-04T10:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161566#M36902</link>
      <description>&lt;P&gt;Hello Tyrone_owen_1,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Port 749 is the default port used for the KDC administration daemon.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Team NetApp&lt;/P&gt;</description>
      <pubDate>Fri, 27 Nov 2020 02:49:47 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161566#M36902</guid>
      <dc:creator>ttran</dc:creator>
      <dc:date>2020-11-27T02:49:47Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161573#M36905</link>
      <description>&lt;P&gt;Hi tyrone_owen,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As mention before by &lt;a href="https://community.netapp.com/t5/user/viewprofilepage/user-id/47696"&gt;@ttran&lt;/a&gt;, port 749 is used for the kdc (kerberos) administration daemon.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P data-unlink="true"&gt;Here is a link to the &lt;A href="https://docs.netapp.com/us-en/occm/reference_networking_azure.html" target="_self"&gt;networking requirements for CVO in Azure&lt;/A&gt; incase you were wondering all the ports that are used in the SG.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let us know if you have any additional questions regarding CVO in Azure or cloud in general&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 27 Nov 2020 04:46:55 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161573#M36905</guid>
      <dc:creator>darb0505</dc:creator>
      <dc:date>2020-11-27T04:46:55Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161653#M36933</link>
      <description>&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Probably my ignorance but isn't that an outbound port?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Dec 2020 08:53:13 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161653#M36933</guid>
      <dc:creator>tyrone_owen_1</dc:creator>
      <dc:date>2020-12-01T08:53:13Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161696#M36946</link>
      <description>&lt;P&gt;It is both inbound and outbound.&amp;nbsp; If you are using HA CVO then the inbound traffic will go through the Azure Load Balancer, which is why traffic from the Load Balancer should be open to any port/protocol.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Let me know if you have any further questions.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 06:42:42 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161696#M36946</guid>
      <dc:creator>darb0505</dc:creator>
      <dc:date>2020-12-02T06:42:42Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161697#M36947</link>
      <description>&lt;P&gt;Just to be clear, it is possible for the KDC administration daemon to initiate&amp;nbsp;&lt;STRONG&gt;inbound&lt;/STRONG&gt; traffic over 749 to a CVO appliance? In what circumstances please?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 09:00:03 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/161697#M36947</guid>
      <dc:creator>tyrone_owen_1</dc:creator>
      <dc:date>2020-12-02T09:00:03Z</dc:date>
    </item>
    <item>
      <title>Re: CVO in Azure - NSG Rules (Kerberos)</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/162133#M37025</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Cloud Manager creates AWS security groups that include the inbound and outbound rules that the Connector and Cloud Volumes ONTAP need to operate successfully.&amp;nbsp;&lt;/SPAN&gt;&lt;FONT size="3"&gt;&lt;A href="https://docs.netapp.com/us-en/occm/reference_security_groups.html#rules-for-cloud-volumes-ontap" target="_self"&gt;Security group rules for AWS&lt;/A&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For more information please visit the below link.&lt;/P&gt;&lt;P&gt;&lt;A href="https://kb.netapp.com/Advice_and_Troubleshooting/Cloud_Services/Cloud_Manager/Can_the_configuration_of_NetApp_HA_Mediator_Instance_External_Security_Groups__be_changed%3F" target="_self"&gt;Can the configuration of&amp;nbsp;AWS External Security Groups for CVO be changed?&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Dec 2020 08:12:12 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/CVO-in-Azure-NSG-Rules-Kerberos/m-p/162133#M37025</guid>
      <dc:creator>Mjizzini</dc:creator>
      <dc:date>2020-12-15T08:12:12Z</dc:date>
    </item>
  </channel>
</rss>

