port 8080 for MS and R MP Q etc

Hi,


https://docs.apigee.com/private-cloud/v4.19.06/port-requirements
We just noticed something
see that R MP PG and QPID needs access to 8080 on the MS
why?
Port for Edge management API calls. These components require access to port 8080 on the Management Server: Router, Message Processor, UI, Postgres, Apigee SSO (if enabled), and Qpid.


We never opened these ports from R & MP to MS. Why router needs to communicate MS management port? (I can understand SSO, UI, etc but Router and MP)? MS is the components that work against RMP not vice-versa

What is the purpose for these communcation?

1 1 214
1 REPLY 1

Hi Denis, from my experience these connections are used during the installation only (check with the tcpdump).

But I agree that some more information on the ports usage would be useful; especially when configuring the TLS on the Edge Management Server — the documentation page recommends turning off HTTP on MS in production, which means R, PS, Q, and MP won't be able to connect to MS over port 8080.

I've tested closing the port 8080 with iptables (leaving only 8443) and so far didn't notice any disruptions. But again — more information in the documentation on that would be helpful.