Managing HP Servers through Firewalls with Insight Management 7.0
21
Y Y 5989 HTTPS
HTTPS WBEM, WBEM Service on EVA
Command View Server, BNA port to
connect SPM
Y Y 5988 HTTP WBEM service
Y Y 2381 HTTPS Used by web agents
Y 20,21 TCP
FTP - Used for upload and configuration
backup from CLI
Y 443 SSL Graphical User Interface
Y Y
24600-
24616
HTTPS Used for Web Management Interface
Y Y 22 SSH-2 Used by the Distributed Task Facility (DTF)
Y Y 9143 OpenSSL Used by Application Discovery
Y
9617,9
618
TCP Global Workload Manager uses on CMS
Y Y Y 280 HTTP
Web server for HP SIM; Web agent auto-
start port
Y 50000 HTTPS HPSIM Webserver
Y 51001 HTTPS LSA RMI port
1
All ports are for TCP and UDP.
2
The CMS will normally have all managed system ports open, as the CMS is a managed system itself. Firewalls may be
configured to block these ports if the CMS is not to be managed from another system. Discovery protocol is configurable
between ICMP or TCP and a configurable port; default is 80.
3
RMI port is used within the CMS for inter-process communication. Connections from outside the CMS are not accepted, and
firewalls may block this port.
4
Many CMS outgoing ports are used for discovery.
5
50000 port number is configurable in server.xml (see Appendix B: Modifying default ports).
6
50004 port number is configurable in globalsettings.props (see Appendix B: Modifying default ports).
Ports for HP Systems Insight Manager
Ports for HP Insight Control
Ports for HP Matrix Operating Environment
HP Smart Update Manager Ports
Table 5 HP SUM ports for Windows
CMS Managed
System
Port Protocol
1
Description
In
2
Out In Out
Y Y
445 and
137/138/1
39
TCP and
UDP
These ports are needed to connect to the remote
ADMIN$ share on target servers (port 137 only if
you are using NetBIOS naming service)
Y Y
60000-
60007
SSL
Random ports are used in this range to pass
messages back and forth between the local and
remote systems via SSL
Y Y
80, 63000-
63005
HTTPS
Used for passing files to the target and retrieving
the logs via an internal mini-https server. Uses
port 80 if it is available or a random port
between 63000 and 63005 if it is not. Allows
updates of the iLO firmware without the need to