Managing HP Servers through Firewalls with Insight Management 7.0

22
access the host server. This will allow servers
running VMWare or other virtualization platforms
to update their iLO without the need to reboot
their server or migrate their VMs to other servers.
Y Y 50116 TCP This is port is used in CMS
Y Y 51268 TCP This port is used in target machine
Y Y
61000-
61007
These ports are used from the target server back
to the system running HP Smart Update Manager.
The same mechanism is used by the remote
access code as the 60000 ports, with the first
trial port as 61000. There is no guarantee that
the upper limit is 61007 when a conflict occurs.
For the case of ipv4-only and one NIC, the lowest
available one is used by HP Smart Update
Manager to pass information between processes
on the local workstation where HP Smart Update
Manager is executed, and the next available one
is used to receive messages from remote servers.
Y
62000 and
62001
These ports (or the first two ports available after
62000) are used for internal process
communications on the system running HPSUM on
each target
Y 62286
This port is the default for some internal
communications. It is the listening on the remote
side if there is no conflict. If a conflict occurs, the
next available one is used.
1
All ports are for TCP and UDP.
2
The CMS will normally have all managed system ports open, as the CMS is a managed system itself. Firewalls may be
configured to block these ports if the CMS is not to be managed from another system.
Table 6 HP SUM ports for Linux
CMS Managed
System
Port Protocol
1
Description
In
2
Out In Out
Y Y 22 SSH
This port is needed to establish a connection to
the remote Linux server through SSH
Y Y
60000-
60007
SSL
Random ports are used in this range to pass
messages back and forth between the local and
remote systems via SSL
Y Y
80, 63000-
63005
HTTPS
Used for passing files to the target and retrieving
the logs via an internal mini-https server. Uses
port 80 if it is available or a random port
between 63000 and 63005 if it is not. Allows
updates of the iLO firmware without the need to
access the host server. This will allow servers
running VMWare or other virtualization platforms
to update their iLO without the need to reboot
their server or migrate their VMs to other servers.
Y Y
61000-
61007
These ports are used from the target server back
to the system running HP Smart Update Manager.
The same mechanism is used by the remote
access code as the 60000 ports, with the first
trial port as 61000. There is no guarantee that
the upper limit is 61007 when a conflict occurs.
For the case of ipv4-only and one NIC, the lowest