[cisco-voip] tcp/8088

Wes Sisk wsisk at cisco.com
Mon Mar 22 13:45:54 EDT 2010


I don't believe port 8088 is open in the firewall by default.  I also 
don't see anything listening on 8088.

On my servers:
admin:show open ports regexp 8088
Executing.. please wait.
Unable to retrieve list of open files/ports, error:
Possibly the command didnt return any values for the parameters passed
Executed command unsuccessfully

TCP sessions that are not fully connected are not in that output, you 
have to use another command:
admin:show network status nodns search 8088
admin:
clearly nothing there either.

For the firewall:

admin:utils firewall ipv4 list
Table: mangle
Chain PREROUTING (policy ACCEPT)
target     prot opt source               destination        

Chain INPUT (policy ACCEPT)
target     prot opt source               destination        

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination        

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination        

Chain POSTROUTING (policy ACCEPT)
target     prot opt source               destination        

Table: nat
Chain PREROUTING (policy ACCEPT)
target     prot opt source               destination        
REDIRECT   tcp  --  0.0.0.0/0            0.0.0.0/0           tcp dpt:443 
redir ports 8443
REDIRECT   tcp  --  0.0.0.0/0            0.0.0.0/0           tcp dpt:80 
redir ports 8080

Chain POSTROUTING (policy ACCEPT)
target     prot opt source               destination        

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination        
DNAT       tcp  --  0.0.0.0/0            127.0.0.1           tcp dpt:443 
to::8443
DNAT       tcp  --  0.0.0.0/0            14.48.40.51         tcp dpt:443 
to::8443
DNAT       tcp  --  0.0.0.0/0            127.0.0.1           tcp dpt:80 
to::8080
DNAT       tcp  --  0.0.0.0/0            14.48.40.51         tcp dpt:80 
to::8080

Table: filter
Chain INPUT (policy DROP)
target     prot opt source               destination        
DROP       all  --  127.0.0.0/8          0.0.0.0/0          
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0          
ACCEPT     udp  -f  0.0.0.0/0            0.0.0.0/0          
DROP       all  --  0.0.0.0/0            0.0.0.0/0           state INVALID
ACCEPT     all  --  0.0.0.0/0            0.0.0.0/0           state 
RELATED,ESTABLISHED
ACCEPT     icmp --  0.0.0.0/0            0.0.0.0/0           icmp type 8 
limit: avg 10/sec burst 5
LOG        icmp --  0.0.0.0/0            0.0.0.0/0           icmp type 8 
limit: avg 1/min burst 5 LOG flags 0 level 4 prefix `ping flood '
DROP       icmp --  0.0.0.0/0            0.0.0.0/0           icmp type 8
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp dpt:22 
flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:4040 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:4040 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:8500
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:8500 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:8443 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:8080 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:123
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:9050 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:5007 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:1500 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:1500 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:1515 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:1515 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:8001 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:8001 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2444 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2445 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:3804 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:8002 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:1720 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2000 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2001 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2002 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:2427
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2428 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:5060 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:5060
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpts:32768:61000 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp 
dpts:32768:61000
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2748 flags:0x02/0x02
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:8003 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:69
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:6970 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp 
dpts:24576:32767
ACCEPT     tcp  --  0.0.0.0/0            0.0.0.0/0           tcp 
dpt:2912 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpts:2551:2552 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpts:2551:2552 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:1090 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:1090 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:1099 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:1099 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:2555 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:2555 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.52          0.0.0.0/0           tcp 
dpt:2556 flags:0x02/0x02
ACCEPT     tcp  --  14.48.40.53          0.0.0.0/0           tcp 
dpt:2556 flags:0x02/0x02
ACCEPT     udp  --  0.0.0.0/0            0.0.0.0/0           udp dpt:161

Chain FORWARD (policy DROP)
target     prot opt source               destination        

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination        

/Wes




On Monday, March 22, 2010 11:19:32 AM, Ed Leatherman 
<ealeatherman at gmail.com> wrote:
> Does anyone know what an SCCP based IP Phone would be doing trying to
> connect to call manager (Publisher no less) on TCP/8088 ? I've been
> looking through the port utilization document for CUCM 6.1 as well as
> UCCX 7 and can't find a mention of that port. Lots of 8080 but no
> 8088. Just started seeing it being blocked on ACL's but I don't have
> any services or enterprise parameters pointed at that port.
>
> Upgraded contact center express to 7 recently, but these aren't
> contact center phones which makes me think it's something else. Gonna
> work on a packet capture this afternoon if I get a chance.
>
>   



More information about the cisco-voip mailing list