You can configure your Access Manager components so that Administration Console is on the same side of the firewall as other Access Manager components and have a firewall between them and LDAP servers.
Figure 1-2 A Firewall Separating Administration Console and the LDAP Server
In this configuration, you need to open the required ports in the second firewall for Administration Console and Identity Server.
For information about all required ports, see Required Ports
in the NetIQ Access Manager CE 24.2 (v5.1) Installation and Upgrade Guide.