VMware Cloud Community
mbaij
Contributor
Contributor

Firewall ports for 2-node vSAN solution

I am working on a 2-node vSAN solution, I need to know what firewall ports(including tcp or UDP and direction-unidirectional or bi-directional) should be open between- 1.- vCenter and ESXi hosts, 2.- vCenter and witness server, 3.-ESXi hosts and witness server. could someone please reply with the required information?

0 Kudos
2 Replies
SupreetK
Commander
Commander

Below link should help you -

VMware Knowledge Base

Please consider marking this answer as "correct" or "helpful" if you think your questions have been answered.

Cheers,

Supreet

0 Kudos
TheBobkin
Champion
Champion

Hello mbaij​,

Welcome to Communities.

A lot of the required ports are actually dynamically opened, unless of course you mean to configure these on some other firewall.

vCenter (Scroll down to 6.0):

https://kb.vmware.com/s/article/52963

https://docs.vmware.com/en/VMware-vSphere/6.5/com.vmware.vsphere.upgrade.doc/GUID-925370DD-E3D1-455B...

ESXi 6.x:

https://kb.vmware.com/s/article/2039095

vSAN:

https://storagehub.vmware.com/t/vmware-vsan/vmware-r-vsan-tm-network-design/vsan-network-port-requir...

This article has links to other required-port pages for other VMware products such as VUM, Horizon, etc.:

https://kb.vmware.com/s/article/1012382

Bob

0 Kudos