Dell PowerStore 1200T EMC PowerStore Planning Guide - Page 26

Table 11. Appliance network ports continued, Service, Protocol, Access Direction, Description

Page 26 highlights

Table 11. Appliance network ports (continued) Port Service Protocol 500 IPsec (IKEv2) UDP 514 1468 3033 3260 Remote Logging UDP Remote Logging TCP Import iSCSI TCP/UDP TCP 3261 4420 Data mobility TCP I/O Controller TCP Access Direction Description Bi-directional To make IPSec work through your firewalls, open UDP port 500 and permit IP protocol numbers 50 and 51 on both inbound and outbound firewall filters. UDP Port 500 should be opened to allow Internet Security Association and Key Management Protocol (ISAKMP) traffic to be forwarded through your firewalls. IP protocol ID 50 should be set to allow IPSec Encapsulating Security Protocol (ESP) traffic to be forwarded. IP protocol ID 51 should be set to allow Authentication Header (AH) traffic to be forwarded. If closed, IPsec connection between PowerStore appliances will be unavailable. Outbound Allows the appliance to send log messages to remote syslog servers. If closed, log messages cannot be sent to remote syslog servers. Outbound Allows the appliance to send log messages to remote syslog servers. If closed, log messages cannot be sent to remote syslog servers. Outbound Required for storage import from legacy EqualLogic Peer Storage and Compellent Storage Center systems. ● Inbound for Required to provide the following access Host and ESXi to iSCSI services: host access ● External host iSCSI access ● Bi-directional for ● External or PowerStore embedded replication ESXi host iSCSI access ● Outbound for storage import ● Inter cluster access for replication ● Storage import access from legacy EqualLogic Peer Storage, Compellent Storage Center, Unity, and VNX2 systems If closed, iSCSI services will be unavailable. Used by Data mobility to support reasonable replication performance on low latency connection. Bi-directional Used by Data mobility to support reasonable replication performance on high latency connection. ● Inbound for Required to provide the following access Host and ESXi to NVMe/TCP I/O Controller services: host access ● External host NVMe/TCP access ● Bi-directional for ● External or PowerStore embedded replication ESXi host NVMe/TCP acces ● Outbound for storage import ● Inter cluster access for replication ● Storage import access from legacy EqualLogic Peer Storage, Compellent Storage Center, Unity, and VNX2 systems If closed, NVMe TCP I/O I/O Controller services will be unavailable. 26 Port usage

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34

Table 11. Appliance network ports (continued)
Port
Service
Protocol
Access Direction
Description
500
IPsec (IKEv2)
UDP
Bi-directional
To make IPSec work through your
firewalls, open UDP port 500 and permit
IP protocol numbers 50 and 51 on both
inbound and outbound firewall filters.
UDP Port 500 should be opened to
allow Internet Security Association and
Key Management Protocol (ISAKMP)
traffic to be forwarded through your
firewalls. IP protocol ID 50 should be
set to allow IPSec Encapsulating Security
Protocol (ESP) traffic to be forwarded.
IP protocol ID 51 should be set to allow
Authentication Header (AH) traffic to be
forwarded. If closed, IPsec connection
between PowerStore appliances will be
unavailable.
514
Remote Logging
UDP
Outbound
Allows the appliance to send log
messages to remote syslog servers. If
closed, log messages cannot be sent to
remote syslog servers.
1468
Remote Logging
TCP
Outbound
Allows the appliance to send log
messages to remote syslog servers. If
closed, log messages cannot be sent to
remote syslog servers.
3033
Import
TCP/UDP
Outbound
Required for storage import from legacy
EqualLogic Peer Storage and Compellent
Storage Center systems.
3260
iSCSI
TCP
Inbound for
Host and ESXi
host access
Bi-directional for
replication
Outbound for
storage import
Required to provide the following access
to iSCSI services:
External host iSCSI access
External or PowerStore embedded
ESXi host iSCSI access
Inter cluster access for replication
Storage import access from legacy
EqualLogic Peer Storage, Compellent
Storage Center, Unity, and VNX2
systems
If closed, iSCSI services will be
unavailable. Used by Data mobility
to support reasonable replication
performance on low latency connection.
3261
Data mobility
TCP
Bi-directional
Used by Data mobility to support
reasonable replication performance on
high latency connection.
4420
I/O Controller
TCP
Inbound for
Host and ESXi
host access
Bi-directional for
replication
Outbound for
storage import
Required to provide the following access
to NVMe/TCP I/O Controller services:
External host NVMe/TCP access
External or PowerStore embedded
ESXi host NVMe/TCP acces
Inter cluster access for replication
Storage import access from legacy
EqualLogic Peer Storage, Compellent
Storage Center, Unity, and VNX2
systems
If closed, NVMe TCP I/O I/O Controller
services will be unavailable.
26
Port usage