VMware Cloud Community
damccumb
Contributor
Contributor

CIM

I was just wondering if there is anything wrong with not allowing the CIM ports throught the firwall on the ESX servers. I am installing our servers and documenting the firewall rules and I know our security guys will ask. Thanks

0 Kudos
3 Replies
Texiwill
Leadership
Leadership

Hello,

I would not, I believe CIM is used by VC for some things. However, the easiest test is to disable things and then see if VC works. Smiley Happy I have yet to run that test. It is on my list. Smiley Happy


Best regards,

Edward L. Haletky

VMware Communities User Moderator

====

Author of the book 'VMWare ESX Server in the Enterprise: Planning and Securing Virtualization Servers', Copyright 2008 Pearson Education. As well as the Virtualization Wiki at http://www.astroarch.com/wiki/index.php/Virtualization

--
Edward L. Haletky
vExpert XIV: 2009-2023,
VMTN Community Moderator
vSphere Upgrade Saga: https://www.astroarch.com/blogs
GitHub Repo: https://github.com/Texiwill
0 Kudos
damccumb
Contributor
Contributor

I thought so too. I am building my VC server right now. I was hoping that someone could telling me why CIM needs to be open so i could go to your security guys with some knowledge.

0 Kudos
Nicodemus
Contributor
Contributor

Has anyone answered this question yet? I actually have Securuty guys asking why we need both CIm ports 5988 (http) and 5989 (https) open?

Anyone?

- Nicodemus

0 Kudos