solution Contentsolution Content

HP FutureSmart - Disable ports, protocols, or services not in use without using a firewall

Learn how to restrict TCP access while permitting HTTPS for Embedded Web Server (EWS) management on TCP 443 using the new feature available in HP FutureSmart 5.5 or newer.

This feature allows the disabling of all unused ports, protocols, and services, including TCP 7627 when not in use. If a remote management tool is not installed and only the EWS is being used for configuration, this feature provides the capability to block all access on TCP 80 and TCP 7627 (separately) while permitting HTTPS for EWS management on TCP 443.

Applicable printers

This document applies to HP Enterprise and HP Managed printers running HP FutureSmart 5.5 or newer.

Disable ports, protocols, and/or services

To disable ports, protocols, and/or services, use the Embedded Web Server (EWS).

  1. In the address line of a web browser, type the printer IP address or host name and then press Enter to open the Embedded Web Server (EWS).

  2. Log in as an administrator.

  3. Select the Networking tab.

  4. Select Mgmt. Protocols from the left pane.

  5. Select the Web Mgmt tab.

    Web Mgmt settings in Mgmt. Protocols

    Web Mgmt settings in Mgmt. Protocols
  6. Select the port(s) you want to disable.

    • Port 80 - Used for the communication between a workstation and a printer through the HTTP protocol.

    • Port 443 - Used to provide a more secure connection through the HTTPS protocol.

    • Port 7627 - Used for communication between HP Web JetAdmin and the printer.

  7. Manually confirm the security reset from the control panel.

    Note:

    If all three options are disabled, the printer cannot be accessed remotely until manually reset from the control panel.

    1. Open Settings.

    2. Select Networking.

    3. Select either Ethernet or Wireless.

    4. Select Security and then select Reset Security.

      Reset Security option on the printer control panel

After performing the Reset Security action, all three ports are enabled in the EWS.

All three ports disabled in the Embedded Web Server after the security reset

All three ports disabled in the Embedded Web Server after the security reset