Reference Guide

Table 4. Network ports related to PowerStore X model appliances
Port Service Protocol Access Direction Description
22 SSH server TCP Inbound Allows SSH access (if enabled). If closed,
management connections using SSH will
be unavailable.
80, 9000 vSphere Web
Access
TCP Inbound Access for vSphere Update Manager Web
Client plug-in for vSphere Web Client.
427 CIM Service
Location Protocol
(SLP)
TCP/UDP Bi-directional The CIM client uses the Service Location
Protocol, version 2 (SLPv2) to find CIM
servers.
443 vSphere Web Client TCP Inbound Used for client connections.
902 Network File Copy
(NFC), VMware
vCenter, vSphere
Web Client
TCP
Bi-directional
for NFC
Outbound for
VMware
vCenter
Inbound for
vSphere Web
client
NFC provides a file-type-aware FTP
service for vSphere components. ESXi
uses NFC for operations such as
copying and moving data between
datastores by default.
VMware vCenter agent
For vSphere Web client, used for client
connections.
5900, 5901, 5902,
5903, 5904
RFB protocol TCP Inbound Remote access to graphical user
interfaces such as VNC.
5988 Common
Information Model
(CIM) Server
TCP Inbound Server for CIM.
5989 CIM Secure Server TCP Inbound Server for CIM.
6999 NSX Virtual
Distributed Logical
Router,
rabbitmqproxy
UDP
Bi-directional
for NSX Virtual
Distributed
Router service
Outbound for
rabbitmqproxy
For NSX Virtual Distributed Router
service, the firewall port associated
with this service is opened when NSX
VIBs are installed and the VDR module
is created. If no VDR instances are
associated with the host, the port
does not have to be open.
For rabbitmqproxy, a proxy running on
the ESXi host. This proxy allows
applications that are running inside
virtual machines to communicate with
the AMQP brokers that are running in
the vCenter network domain. The
virtual machine does not have to be on
the network, that is, no NIC is
required. Ensure that outgoing
connection IP addresses include at
least the brokers in use or future. You
can add brokers later to scale up.
8000 vMotion TCP Bi-directional Required for virtual machine migration
with vMotion. ESXi hosts listen on port
8000 for TCP connections from remote
ESXi hosts for vMotion traffic.
8100, 8200, 8300 Fault Tolerance TCP/UDP Bi-directional Used for traffic between hosts for
vSphere Fault Tolerance (FT).
8301, 8302 DVSSync UDP Bi-directional DVSSync ports are used for synchronizing
states of distributed virtual ports between
hosts that have VMware FT record/replay
enabled. Only hosts that run primary or
Communication security settings 31