2.4. Communication
2.4.1. Secure Internal Communication
The communication between suSSHi Gateways and suSSHi Chef is called “Secure Internal Communication” (SIC). This comprises three TCP protocols.
If a network firewall is installed between the gateways and suSSHi Chef, these protocols must be enabled according to the following table:
Source |
Destination |
Protocol |
Port |
Description |
Purpose |
|---|---|---|---|---|---|
suSSHi Gateway(s) |
suSSHi Chef |
TCP |
8443 |
HTTPS with mutual authentication |
|
suSSHi Gateway(s) |
suSSHi Chef |
TCP |
6514 |
RELP over TLS |
|
suSSHi Chef |
suSSHi Gateway(s) |
TCP |
22 [*] |
SSH |
|
2.4.2. System Events
suSSHi Chef gets logging feeds for system and session messages from all suSSHi Gateways. These messages can be forwarded using the Syslog (RFC 5424) protocol.
suSSHi Chef supports UDP, TCP, and RELP (over TCP) connections to up to two external Syslog servers. If two Syslog servers are configured, both servers get the Syslog information in parallel. The port for UDP, TCP, and RELP can be configured as well.
For the available configuration options, please refer to System > Preferences.