Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell VxRail Network Planning Guide

PDF

Appendix D: VxRail Open Ports Requirements

Firewall settings specific for the deployment of a VxRail cluster are provided. Use the links that are provided after the tables for firewall rules that are driven by product feature and use case. The VxRail cluster must connect to specific applications in your data center. DNS is required, and NTP is optional. Open the necessary ports to enable connectivity to the external syslog server, and for LDAP and SMTP.

Table 1. Data center Application AccessDatacenter Application Access
Description Source Devices Destination Devices Protocol Ports
DNS VxRail Manager, Dell iDRAC DNS Servers UDP 53
NTP Client Host ESXi Management Interface, Dell iDRAC, VMware vCenter Servers, VxRail Manager NTP Servers UDP 123
SYSLOG DNS Servers Host ESXi Management Interface, VMware vRealize Log Insight Syslog Server TCP 514
LDAP VMware vCenter Servers LDAP Server TCP 389, 636
SMTP Secure connect gateway VMs, VMware vRealize Log Insight. SMTP Servers TCP 25

Open the necessary firewall ports to enable IT administrators to deploy the VxRail cluster.

Table 2. Administration Access Administration Access
Description Source Devices Destination Devices Protocol Ports
ESXi Management Administrators Host ESXi Management Interface TCP, UDP 902
VxRail Management UI/Web Interfaces Administrators VMware vCenter Server, VxRail Manager, Host ESXi Management, Dell iDRAC port, VMware vRealize Log Insight TCP 80, 443
Dell server management Administrators Dell iDRAC TCP 623, 5900, 5901
SSH and SCP Administrators Host ESXi Management, vCenter Server, Dell iDRAC port, VxRail Manager Console TCP 22

If you plan to use a customer-managed VMware vCenter Server instead of deploying a VMware vCenter Server in the VxRail cluster, open the necessary ports so that the VMware vCenter Server instance can connect to the ESXi hosts.

Table 3. VMware vCenter Server and VMware vSphere ClientVMware vCenter Server and VMware vSphere Client
Description Source Devices Destination Devices Protocol Ports
VMware vSphere Clients to VMware vCenter Server VMware vSphere Clients VMware vCenter Server TCP 5480, 8443, 9443, 10080, 10443
Managed Hosts to VMware vCenter Server Host ESXi Management VMware vCenter Server TCP 443, 902, 5988,5989, 6500, 8000, 8001
Managed Hosts to VMware vCenter Server Heartbeat Host ESXi Management VMware vCenter Server TCP 902

Other firewall port settings may be necessary depending on your data center environment. The list of documents in this table is provided for reference purposes. VxRail manages the VxRail Customer Firewall Rules interactive workbook. Access to the workbook requires Dell customer credentials. If you do not have Dell login credentials, contact your account team to download the tool for you.

Table 4. VxRail Customer Firewall Rules interactive workbookVxRail Customer Firewall Rules interactive workbook
Description Reference
VMware Ports and Protocols VMware Ports and Protocols
Network port diagram for VMware vSphere 6 Network Port Diagram for vSphere 6
vSAN Ports Requirements vSAN Network Ports Requirements
Dell iDRAC Port Requirements How to configure the iDRAC 9 for Dell PowerEdge
Secure Connect Gateway Documentation Dell Secure Connect Gateway Documentation
VMware vCenter Cloud Gateway Requirements VMware Cloud Gateway for vSphere+ Requirements

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\