...
- 80 (HTTP)
- 443 (SSL virtual host for HTTPS)
- 446 (SSL virtual host for authenticating via user certificates)
- 447 (SSL virtual host for certificate authentication using "SSLVerifyClient require")
- 8443 (SSL virtual host for SP's back-channel SOAP calls for attributesfrom MIT SPs)
- 8444 (SSL virtual host for back-channel SOAP calls from InCommon SPs)
The terracotta server will listen on the following TCP ports:
- 9510 (client-to-server)
- 9520 (JMX)
- 9530 (server-to-server)
Note these listeners only need to accept connections from peer servers in the cluster, so these ports should be configured accordingly in the firewall.
...