Help Center> Cloud Bastion Host> FAQs> Product Consulting> How Can I Configure Ports for a CBH Instance?
Updated on 2024-04-24 GMT+08:00

How Can I Configure Ports for a CBH Instance?

To properly use CBH, configure the instance and resource security group ports by referring to Table 1.

  • During cross-version upgrade, ports 80, 8080, 443, and 2222 are automatically enabled for the instance. If you do not need to use these ports, disable them immediately after the upgrade.
  • During cross-version upgrade, ports 22, 31036, 31679, and 31873 are automatically enabled for the instance. If you do not need to use these ports, disable them immediately after the upgrade.
Table 1 Inbound and outbound rule configuration reference

Scenario Description

Direction

Protocol/Application

Port

Accessing CBH through a web browser (HTTP and HTTPS)

Inbound

TCP

80, 443, and 8080

Accessing a CBH system through Microsoft Terminal Services Client (MSTSC)

Inbound

TCP

53389

Accessing a CBH Instance Through an SSH Client

Inbound

TCP

2222

Accessing CBH instances through FTP clients

Inbound

TCP

20~21

Remotely accessing Linux ECSs of CBH instances over SSH clients

Outbound

TCP

22

Remotely accessing Windows ECSs of CBH instances over the RDP Protocol

Outbound

TCP

3389

Accessing Oracle databases through CBH instances

Inbound

TCP

1521

Accessing Oracle databases through CBH instances

Outbound

TCP

1521

Accessing MySQL databases through CBH instances

Inbound

TCP

33306

Accessing MySQL databases through CBH instances

Outbound

TCP

3306

Accessing SQL Server databases through CBH instances

Inbound

TCP

1433

Accessing SQL Server databases through CBH instances

Outbound

TCP

1433

Accessing DB databases through CBH instances

Inbound

TCP

50000

Accessing DB databases through CBH instances

Outbound

TCP

50000

Accessing GaussDB databases through CBH

Inbound

TCP

18000

Accessing GaussDB databases through CBH

Outbound

TCP

18000

License servers

Outbound

TCP

9443

Cloud services

Outbound

TCP

443

Accessing a CBH system through the SSH client in the same security group

Outbound

TCP

2222

SMS service

Outbound

TCP

10743 and 443

Domain name resolution service

Outbound

UDP

53

Product Consulting FAQs

more