Modifying the Global Configuration for Remote Device Connections
  • 25 Feb 2022
  • 3 Minutes to read
  • Contributors
  • Dark
    Light
  • PDF

Modifying the Global Configuration for Remote Device Connections

  • Dark
    Light
  • PDF

Article Summary

Global settings for TCP connections from the Skylight sensor: control can be modified in this screen. You can change the base TCP port numbers for NFV tunnels and for flow broker TCP connections. The base port numbers are used to derive the actual TCP port numbers when the device is connected to sensor: control in IP agnostic mode. For the NFV tunnel from the sensor: control to the device, the actual TCP port number is the NFV tunnel base port number plus the device's instance index. For the sensor: control's TCP connection to the device for flow broker data collection, the TCP port number is the flow broker base port number plus the device's instance index.


Note: TCP port values used for devices in IP-agnostic mode are derived from the base port values. The settings of the base port values imply that a range of port values may be used by sensor: control for remote devices that it manages. You must take care in choosing the base values so that the derived port values are valid and free for use.


CAUTION: The sensor: control communicates with the device at the derived port number = NFV or flow broker base port + device index. The largest device index is 1500 (maximum number of devices managed by sensor: control). The largest TCP port number is 65536. Therefore, the base port number should be selected to avoid producing a derived port that wraps around 65536.

The NFV and flow broker require independent base port numbers to
accommodate the range of devices. You need to ensure the port number ranges for NFV and flow broker are not overlapping by taking into consideration the actual number of devices in your network.



Notes: The NFV and flow broker base port number should not be in the assigned System Range (0 - 1023) defined in RFC 8126.

The NFV and flow broker base port number could be in the Users Range (1024 - 49151) defined in RFC6335, but should preferably be in the Dynamic/Private Range (49152 - 65535).


▶To modify the global configuration for remote device connections

  1. Access the page System ▶ Configuration ▶ RemDev Connection.
    The Global settings for remote-device connections window opens.

  2. Enter the values for NFV tunnel base TCP port number and flow broker base TCP port number, FlowBROKER base TCP port number, Override-config and Autoupdate.

  3. Click Apply.

For information on specific parameters, refer to the following table.

Global settings for remote-device connections (System ▶ Configuration ▶ RemDev Connection)

ParameterDescription
NFV tunnel base TCP port numberBase value for TCP port number for NFV tunnels.
  • Range: 1-65534
  • Default: 44240

Note: When the NFV tunnel base TCP port number is changed, the new value (TCP port = Base NFV tunnel TCP port number + the device's instance-index) will impact all currently established IPAG NFV tunnels as well as direct-IP NFV tunnels to devices that will be subsequently added.

flow broker base TCP port numberBase value for TCP port number for flow broker.
  • Range: 1-65534
  • Default: 8793

Note: flow broker IPAG TCP connections will be configured (or re-configured, for existing connections) with TCP port = Base flow broker TCP port number + the device's instance-index. New Flow broker TCP connections in direct-IP mode will have the updated flow broker base TCP port number as the default value.

Override-config:When enabled, a confirmation is needed to push the local Skylight sensor: control configuration to a remote device.
Auto-update:When enabled, remote devices are automatically updated when added. When disabled, remote devices are not automatically updated when added. If it is disabled, the device will be in the state Hold until the user upgrades the device using the compatible firmware.

© 2024 Accedian Networks Inc. All rights reserved. Accedian®, Accedian Networks®,  the Accedian logo™, Skylight™, Skylight Interceptor™ and per-packet intel™, are trademarks or registered trademarks of Accedian Networks Inc. To view a list of Accedian trademarks visit: http://accedian.com/legal/trademarks/. 


Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.