Table 1. VNX for block - Ports used by Unisphere components
Source component
Destination component
Network port
Protocol
Functionality
Type
Unisphere
Storage management server
80/443 or 2162/2163
HTTP/SSL
Basic management
out-of-band
Storage management server
Storage management server
443 or 2163
HTTP/SSL
Storage system to Storage system domain communication
out-of-band
Storage management server
Host Agent
6389
TCP
LUN/volume mapping information displayed in Unisphere
out-of-band
SP Agent (or Host Agent)
SMTP server
25
TCP
Email alerts
out-of-band
Host Agent
SP Agent
6389
TCP
Central monitoring
out-of-band
Unisphere Service Manager
Storage management server
443 or 2163
TCP/SSL
Service Tasks
out-of-band
Block CLI
Storage management server
443 or 2163
TCP/SSL
Basic management
out-of-band
RemotelyAnywhere
RemotelyAnywhere Host
9519, 22
TCP
Remote Support, login, SSH access
out-of-band
Storage management server
LDAP Server
389
TCP
Unsecure LDAP queries
out-of-band
Storage management server
LDAP Server
636
TCP
Secure LDAP queries
out-of-band
Storage management server or iSCSI port
iSNS Server
3205
TCP
Internet storage naming service (iSNS)
out-of-band
iSCSI initiator
VNX OE for block
3260
TCP
iSCSI data connection
in-band
Unisphere Storage System Initialization Utility
Storage management server
2162
UDP
Array Discovery
out-of-band
Storage management server
Unisphere Storage System Initialization Utility
2163
UDP
Response to discovery request
out-of-band
Storage management server
NTP Server
123
UDP
NTP time synchronization
out-of-band
SP Agent (or Host Agent)
SNMP Manager
161
TCP/UDP
SNMP Traps
out-of-band
Storage management server
ESX or Virtual Center Server
443
HTTP/SSL
VM-aware Unisphere
out-of-band
a 2162/2163 are alternate port pairs that may be used (not supported on VNX unified systems) to hide the VNX for block from attacks that target the default HTTP and SSL/TLS ports. Only the Java applet download is allowed over the unsecured HTTP port. All other communication to the storage system is with the secure SSL/TLS port.
b iSNS registrations will be sent through whichever port can successfully route the packet to the iSNS server.
Data is not available for the Topic
Please provide ratings (1-5 stars).
Please provide ratings (1-5 stars).
Please provide ratings (1-5 stars).
Please select whether the article was helpful or not.
Comments cannot contain these special characters: <>()\