Firewall Ports KB
VMware has just released a new KB article covering all the firewall ports requirements for the following products:
- Consolidated Backup
- Converter 3.x
- Converter 4.x
- Data Recovery
- ESX 3.x
- ESX 4.x
- ESXi 3.x
- ESXi 4.x
- Guided Consolidation
- Lab Manager
- Orchestrator
- Site Recovery Manager
- Stage Manager
- Update Manager
- vCenter 2.5.x
- vCenter 4.x
- View 3.x
- View 4.x
- View/VDM 2.x
This is something that has been sorely missing from VMware’s official documentation. Some of the PDFs just don’t give the detail you would normally expect. However this KB contains all the headers that a firewall engineer would need. Great stuff.
http://kb.vmware.com/kb/1012382
Of course if you want to get a feel for the overall environment, then Dudley Smith’s fantastic Firewall Ports Diagram is still the best resource out there:
http://www.vreference.com/2009/09/22/firewall-diagram-updated-to-version-3/
4 Responses to Firewall Ports KB
Leave a Reply Cancel reply
Forbes Guthrie
Recent Posts
- vSphere 5 vReference Card released
- Cisco UCS boot from iSCSI SAN – ESXi design consideration
- vSphere 5 vReference card – Storage section
- Does 2008 R2 Failover Clustering require a change to the Notify Switches policy?
- vSphere 5 vReference card – Host section
- vSphere 5 vReference card – Install section
- Auto Deploy design concern
- vSphere 5 vReference card – vCenter section
- vSphere 5 vReference card – VM section
- vSphere 5 vReference card – availability section
Recent Comments
- free antivirus software download on Firewall port connection diagram
- Tim Sommer on vSphere 5 Card
- vJohnnyF on vSphere 5 Card
- Forbes Guthrie on Cisco UCS boot from iSCSI SAN – ESXi design consideration
- Chris on Cisco UCS boot from iSCSI SAN – ESXi design consideration
- Forbes Guthrie on vSphere 5 Card
- Forbes Guthrie on vSphere 5 Card
- harold on Auto Deploy design concern
- MarcelVanOs on vSphere 5 Card
- Forbes Guthrie on VMworld 2012 dates and location
Twitter
- Eek! This is big >> RT @DuncanYB: New Article: No Jumbo frames on your Management Network - http://t.co/VjoCtOqz : 2 weeks ago
- RT @ryanbirk: @forbesguthrie ...owe you a beer! Read all 50 pgs of your notes and passed the VCI-5 exam this morning << Congrats, great news : 2 weeks ago
- Working with Host Profiles today. Clunky, but a great tool. : 2 weeks ago
- @csilvertooth Frustrating yeah, they maybe need a popup warning message check when you start it without correct permissions. #VMware : 2 weeks ago
- RT @joshcoen: Passed VCP5 this morning. Big shout out to @jaslanger and @forbesguthrie #invaluableresources. << Congrats! : 2 weeks ago
- RT @cwjking: @forbesguthrie Someone commented on my blog to link to your site for VCP5 related stuff. http://t.co/7KqZsNuv << thx : 2 weeks ago
- @sanchezhutz Nice, I hear lots of good things about those. David is nice chap. : 3 weeks ago
- .RT @cxi: I'll be in Vancouver the week of the 23rd ;) << Great. Anyone else in Vancouver up for vBeers? I'm free 23,25,27 /cc @astorrs : 3 weeks ago
- @sanchezhutz Best of luck Sanchez! When are you planning to take it mate, work paying for it? : 3 weeks ago
- New blog post: vSphere 5 vReference Card released - http://t.co/4rYEPsM9 : 3 weeks ago






I just noticed that it is missing the following for ESX 4 (and maybe 4i):
“5900-5964 RFB protocol, which is used by management tools such as VNC Incoming and outgoing TCP”
See ESX Configuration Guide 4.0U1 Page 152
It would also be nice to show if the ESX ports are from the COS or VMkernel interface.
Agreed, having them listed by COS/vKernel/VMotion/FT/etc would be very helpful since they’d usually be VLAN’d apart.
Well there are also some ports missing for Data Recovery, 902, 443 and 53 which is required by the appliance.. http://www.mingle-mangle.org/2009/08/vmware-data-recovery-and-ports/
Marcus
Hi Marcus,
I know 443 is a requirement, but can you point me to a VMware source which states it needs 902 and 53? Or is this just from personal experience?
Thanks, Forbes.