Dell PowerStore 1000T EMC PowerStore Security Configuration Guide - Page 30

Network ports related to PowerStore X model appliances

Page 30 highlights

Table 3. Appliance network ports related to file (continued) Port Service Protocol Access Direction 10000 NDMP TCP Inbound [10500,10531] 12228 NDMP reserved TCP range for NDMP dynamic ports Antivirus checker TCP service Inbound Outbound Description as some data has to be replicated. After it is started, there is no way to stop the service. • Enables you to control the backup and recovery of a Network Data Management Protocol (NDMP) server through a network backup application, without installing third party software on the server. In an appliance, the NAS Server functions as the NDMP server. • The NDMP service can be disabled if NDMP tape backup is not used. • The NDMP service is authenticated with a username/password pair. The username is configurable. The NDMP documentation describes how to configure the password for a variety of environments. For three-way backup/restore sessions, NAS Servers use ports 10500 to 10531. Required for the Antivirus checker service. Network ports related to PowerStore X model appliances The following table outlines the collection of network ports and the corresponding services that may be found on PowerStore X model appliances. Table 4. Network ports related to PowerStore X model appliances Port Service Protocol Access Direction Description 22 SSH server TCP Inbound Allows SSH access (if enabled). If closed, management connections using SSH will be unavailable. 80, 9000 vSphere Web Access TCP Inbound Access for vSphere Update Manager Web Client plug-in for vSphere Web Client. 427 CIM Service Location TCP/UDP Bi-directional The CIM client uses the Service Location Protocol (SLP) Protocol, version 2 (SLPv2) to find CIM servers. 443 vSphere Web Client TCP Inbound Used for client connections. 902 Network File Copy TCP • Bi-directional for • NFC provides a file-type-aware FTP (NFC), VMware NFC service for vSphere components. ESXi vCenter, vSphere Web Client • Outbound for VMware vCenter uses NFC for operations such as copying and moving data between datastores by • Inbound for default. vSphere Web • VMware vCenter agent client • For vSphere Web client, used for client connections. 5900, 5901, 5902, 5903, 5904 5988 RFB protocol TCP Common Information TCP Model (CIM) Server Inbound Inbound Remote access to graphical user interfaces such as VNC. Server for CIM. 30 Communication security settings

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41

Table 3. Appliance network ports related to file (continued)
Port
Service
Protocol
Access Direction
Description
as some data has to be replicated. After it is
started, there is no way to stop the service.
10000
NDMP
TCP
Inbound
Enables you to control the backup and
recovery of a Network Data
Management Protocol (NDMP) server
through a network backup application,
without installing third party software on
the server. In an appliance, the NAS
Server functions as the NDMP server.
The NDMP service can be disabled if
NDMP tape backup is not used.
The NDMP service is authenticated with
a username/password pair. The
username is configurable. The NDMP
documentation describes how to
configure the password for a variety of
environments.
[10500,10531]
NDMP reserved
range for NDMP
dynamic ports
TCP
Inbound
For three-way backup/restore sessions, NAS
Servers use ports 10500 to 10531.
12228
Antivirus checker
service
TCP
Outbound
Required for the Antivirus checker service.
Network ports related to PowerStore X model appliances
The following table outlines the collection of network ports and the corresponding services that may be found on PowerStore X model
appliances.
Table 4. Network ports related to PowerStore X model appliances
Port
Service
Protocol
Access Direction
Description
22
SSH server
TCP
Inbound
Allows SSH access (if enabled). If closed,
management connections using SSH will be
unavailable.
80, 9000
vSphere Web Access
TCP
Inbound
Access for vSphere Update Manager Web
Client plug-in for vSphere Web Client.
427
CIM Service Location
Protocol (SLP)
TCP/UDP
Bi-directional
The CIM client uses the Service Location
Protocol, version 2 (SLPv2) to find CIM
servers.
443
vSphere Web Client
TCP
Inbound
Used for client connections.
902
Network File Copy
(NFC), VMware
vCenter, vSphere
Web Client
TCP
Bi-directional for
NFC
Outbound for
VMware vCenter
Inbound for
vSphere Web
client
NFC provides a file-type-aware FTP
service for vSphere components. ESXi
uses NFC for operations such as copying
and moving data between datastores by
default.
VMware vCenter agent
For vSphere Web client, used for client
connections.
5900, 5901, 5902,
5903, 5904
RFB protocol
TCP
Inbound
Remote access to graphical user interfaces
such as VNC.
5988
Common Information
Model (CIM) Server
TCP
Inbound
Server for CIM.
30
Communication security settings