System Center Virtual Machine Manager Network Communications Ports (UDP/TCP)

Securing your data center typically includes restricting network traffic ports to only those ports that are required, especially traffic to and from your back end monitoring, deployment and management toolsets. This includes limiting the types of traffic to your System Center Virtual Machine Manager deployments. The list below includes the ports used for Virtual Machine Manager – but is not all inclusive of other ports that may be necessary for domain or host to host communications.

Also – keep in mind that publishing VMRC through a reverse NAT, ISA or TMG gateway can be tricky since the client will attempt to resolve back to the Hyper-V host. This will need to be taken into consideration if clients require VMRC access.

 

Connection type

Protocol

Default port

Where to change the port setting

VMM server to VMM agent on Windows Server–based host (control)

WinRM

80

During VMM setup, registry

VMM server to VMM agent on Windows Server–based host (data)

SMB

445

Registry

VMM server to remote Microsoft SQL Server database

TDS

1433

Registry

VMM server to P2V source agent

DCOM

135

Registry

VMM Administrator Console to VMM server

WCF

8100

During VMM setup, registry

VMM Self-Service Portal Web server to VMM server

WCF

8100

During VMM setup

VMM Self-Service Portal to VMM self-service Web server

HTTPS

443

During VMM setup

VMM library server to hosts

BITS

443

During VMM setup, registry

VMM host-to-host file transfer

BITS

443

Registry

VMRC connection to Virtual Server host

VMRC

5900

VMM Administrator Console, registry

VMConnect (RDP) to Hyper-V hosts

RDP

2179

VMM Administrator Console, registry

Remote Desktop to virtual machines

RDP

3389

Registry

VMware Web Services communication

HTTPS

443

VMM Administrator Console, registry

SFTP file transfer from VMWare ESX Server 3.0 and VMware ESX Server 3.5 hosts

SFTP

22

Registry

SFTP file transfer from VMM server to VMWare ESX Server 3i hosts

HTTPS

443

Registry