SELinux enforcing mode and the IPTables host firewall are both enabled by default on Unified CM. Firewall rules can be listed with utils firewall ipv4 list and utils firewall ipv6 list.

Checked 2026-09-25

SELinux enforcing mode is enabled by default
Vendor
Cisco
Product
Unified Communications Manager
Subsystem
OS hardening
Deployment
on-premises
Region
not restricted
Release range
Release 15 and SUs
Checked
2026-09-25

Sources

Cite this note

APA

WarmTransfer. (2026, September 25). Unified CM security hardening: source note cucm-security-hardening-selinux-iptables-default. WarmTransfer. https://warmtransfer.net/knowledge/claims/cucm-security-hardening-selinux-iptables-default

BibTeX

@misc{warmtransfer-claim-cucm-security-hardening-selinux-iptables-default,
  title  = {Unified CM security hardening: source note cucm-security-hardening-selinux-iptables-default},
  author = {{WarmTransfer}},
  year   = {2026},
  url    = {https://warmtransfer.net/knowledge/claims/cucm-security-hardening-selinux-iptables-default},
  note   = {Source note cucm-security-hardening-selinux-iptables-default, checked 2026-09-25}
}

Read in context