6.5.1

Table Of Contents
Table 101. vCenter Server and Platform Services Controller Aected by the TLS
Configurator Utility
Service Name on Windows Name on Linux Port
VMware HTTP Reverse Proxy
rhttpproxy vmware-rhttpproxy
443
VMware Directory Service
VMWareDirectoryService vmdird
636
VMware Syslog Collector (*) vmwaresyslogcollector (*)
rsyslogd
1514
VMware Appliance
Management Interface
N.A.
applmgmt (*)
5480
vSphere Auto Deploy Waiter
vmware-autodeploy-waiter vmware-rbd-watchdog
6501
6502
VMware Secure Token Service
VMwareSTS vmware-stsd
7444
vSphere Authentication Proxy
VMWareCAMService vmcam
7476
vSphere Update Manager
Service (**)
vmware-ufad-vci (**)
vmware-updatemgr
8084
9087
vSphere Web Client
vspherewebclientsvc vsphere-client
9443
vSphere H5 Web Client
vsphere-ui vsphere-ui
5443
VMware Directory Service
VMWareDirectoryService vmdird
11712
(*)TLS is controlled by the cypher list for these services. Granular management is not possible. Only TLS
1.2 or all TLS 1.x versions are supported.
(**) On the vCenter Server Appliance, vSphere Update Manager is on the same system as
vCenter Server. On vCenter Server on Windows, you configure TLS by editing configuration files. See
Disable TLS Versions on vSphere Update Manager.
Table 102. ESXi Ports Aected by the TLS Configurator Utility
Service Service Name Port
VMware HTTP Reverse Proxy and Host
Daemon
Hostd
443
VMware vSAN VASA Vendor Provider
vSANVP
8080
VMware Fault Domain Manager
FDM
8182
VMware vSphere API for IO Filters
ioFilterVPServer
9080
VMware Authorization Daemon
vmware-authd
902
Notes and Caveats
n
Ensure that the legacy ESXi hosts that are managed by vCenter Server support an enabled version
of TLS, either TLS 1.1 and TLS 1.2 or only TLS 1.2. When you disable a TLS version on
vCenter Server 6.5, vCenter Server can no longer manage legacy ESXi hosts 5.x and 6.0 hosts.
Upgrade these hosts to versions that support TLS 1.1 or TLS 1.2.
vSphere Security
VMware, Inc. 210