Following table explains the different network configuration you in order to:

  • Manage SGBox and the Collector using WebUI and CLI.
  • Keep SGBox and the Collector updated.
  • Make a correct communication between SGBox and the Collector.
  • Allow data sources to send data to SGBox and Collector.
FromToPortDescription
Client (User)SGBox443/tcpHTTPS WebUI
Client (User)SGBox22/tcpSSH (CLI)
Client (User)Collector22/tcpSSH (CLI)
Client (User)Collector (v5)4000/tcpOpenVAS console HTTPS
Client (User) / SGBoxSGBox4000/tcpHTTPS (API)
SGBox/Collectorapps.sgbox.it80/tcp
443/tcp
HTTP/S (Updates)
SGBox/Collector*.ubuntu.com80/tcp
443/tcp
HTTP/S (Updates)
Collector (v5)feed.community.greenbone.net873/tcpRSYNC (Updates)
SGBox / Qualys probequalysguard.qg3.apps.qualys.it443/tcpCloud (scans, results)
SGBox / Collector (v6)registry.sgcloud.it7442/tcpHTTPS (Updates), mandatory connection
SGBox (v7)registry.sgbox.it5000/tcpHTTPS (Updates), mandatory connection
SGBox / Collector (v6)No Syslog datasourceseg. 1433/tcp, 1521/tcp, 443/tcpDB, other (receive data)
SGBox / Collector (v6)Active Directory (LDAP)389/tcp, 636/tcpLDAP/LDAPS
CollectorSGBox443/tcpHTTPS (send data)
SGAgentCollector / SGbox443/tcpHTTPS (send data)
Data sourceCollector / SGbox514/udpSyslog (send data)
Data sourceCollector / SGBox514/tcpSyslog (send data)
Data sourceCollector / SGBox6514/tcpSyslog + TLS (send data)

Container Netowoks

SGBox and Collector (V6) introduce containers for different activities. Here you can find the default networks used. If for some reason your internal networks overlap the default containers networks you can change them by connecting to the collector’s CLI: Network Configuration > Change Docker network configuration

VMNetwork NameNetwork Address
SGBox, Collectordefault10.42.78.0/24
Collectorsg-internal10.10.0.0/16
Collectorsg-external10.20.0.0/24
Collectorswarm10.43.0.0/16