Dell PowerStore 7000T EMC PowerStore Planning Guide - Page 27

Table 9. Network ports related to PowerStore X model appliances continued

Page 27 highlights

Table 9. Network ports related to PowerStore X model appliances (continued) Port Service Protocol Access Direction Description 80, 9000 vSphere Web TCP Access Inbound Access for vSphere Update Manager Web Client plug-in for vSphere Web Client. 427 CIM Service TCP/UDP Bi-directional The CIM client uses the Service Location Location Protocol Protocol, version 2 (SLPv2) to find CIM (SLP) servers. 443 vSphere Web Client TCP Inbound Used for client connections. 902 Network File Copy TCP ● Bi-directional ● NFC provides a file-type-aware FTP (NFC), VMware for NFC service for vSphere components. ESXi vCenter, vSphere Web Client ● Outbound for VMware uses NFC for operations such as copying and moving data between vCenter datastores by default. ● Inbound for ● VMware vCenter agent vSphere Web ● For vSphere Web client, used for client client connections. 5900, 5901, 5902, 5903, 5904 5988 5989 6999 RFB protocol Common Information Model (CIM) Server CIM Secure Server NSX Virtual Distributed Logical Router, rabbitmqproxy TCP TCP TCP UDP Inbound Inbound Remote access to graphical user interfaces such as VNC. Server for CIM. Inbound Server for CIM. ● Bi-directional for NSX Virtual Distributed Router service ● Outbound for rabbitmqproxy ● For NSX Virtual Distributed Router service, the firewall port associated with this service is opened when NSX VIBs are installed and the VDR module is created. If no VDR instances are associated with the host, the port does not have to be open. ● For rabbitmqproxy, a proxy running on the ESXi host. This proxy allows applications that are running inside virtual machines to communicate with the AMQP brokers that are running in the vCenter network domain. The virtual machine does not have to be on the network, that is, no NIC is required. Ensure that outgoing connection IP addresses include at least the brokers in use or future. You can add brokers later to scale up. 8000 vMotion TCP 8100, 8200, 8300 Fault Tolerance 8301, 8302 DVSSync TCP/UDP UDP Bi-directional Bi-directional Bi-directional Required for virtual machine migration with vMotion. ESXi hosts listen on port 8000 for TCP connections from remote ESXi hosts for vMotion traffic. Used for traffic between hosts for vSphere Fault Tolerance (FT). DVSSync ports are used for synchronizing states of distributed virtual ports between hosts that have VMware FT record/replay enabled. Only hosts that run primary or backup virtual machines must have these ports open. On hosts that are not using VMware FT, these ports do not have to be open. Port Usage 27

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30

Table 9. Network ports related to PowerStore X model appliances (continued)
Port
Service
Protocol
Access Direction
Description
80, 9000
vSphere Web
Access
TCP
Inbound
Access for vSphere Update Manager Web
Client plug-in for vSphere Web Client.
427
CIM Service
Location Protocol
(SLP)
TCP/UDP
Bi-directional
The CIM client uses the Service Location
Protocol, version 2 (SLPv2) to find CIM
servers.
443
vSphere Web Client
TCP
Inbound
Used for client connections.
902
Network File Copy
(NFC), VMware
vCenter, vSphere
Web Client
TCP
Bi-directional
for NFC
Outbound for
VMware
vCenter
Inbound for
vSphere Web
client
NFC provides a file-type-aware FTP
service for vSphere components. ESXi
uses NFC for operations such as
copying and moving data between
datastores by default.
VMware vCenter agent
For vSphere Web client, used for client
connections.
5900, 5901, 5902,
5903, 5904
RFB protocol
TCP
Inbound
Remote access to graphical user
interfaces such as VNC.
5988
Common
Information Model
(CIM) Server
TCP
Inbound
Server for CIM.
5989
CIM Secure Server
TCP
Inbound
Server for CIM.
6999
NSX Virtual
Distributed Logical
Router,
rabbitmqproxy
UDP
Bi-directional
for NSX Virtual
Distributed
Router service
Outbound for
rabbitmqproxy
For NSX Virtual Distributed Router
service, the firewall port associated
with this service is opened when NSX
VIBs are installed and the VDR module
is created. If no VDR instances are
associated with the host, the port
does not have to be open.
For rabbitmqproxy, a proxy running on
the ESXi host. This proxy allows
applications that are running inside
virtual machines to communicate with
the AMQP brokers that are running in
the vCenter network domain. The
virtual machine does not have to be on
the network, that is, no NIC is
required. Ensure that outgoing
connection IP addresses include at
least the brokers in use or future. You
can add brokers later to scale up.
8000
vMotion
TCP
Bi-directional
Required for virtual machine migration
with vMotion. ESXi hosts listen on port
8000 for TCP connections from remote
ESXi hosts for vMotion traffic.
8100, 8200, 8300
Fault Tolerance
TCP/UDP
Bi-directional
Used for traffic between hosts for
vSphere Fault Tolerance (FT).
8301, 8302
DVSSync
UDP
Bi-directional
DVSSync ports are used for synchronizing
states of distributed virtual ports between
hosts that have VMware FT record/replay
enabled. Only hosts that run primary or
backup virtual machines must have these
ports open. On hosts that are not using
VMware FT, these ports do not have to
be open.
Port Usage
27