Tuesday, July 31, 2018

Network ports for Site Recovery Manager 6.1

Hi All,

Toady I found good KB article about SRM ports which are required for successful implementation and site pairing.

Site Recovery Manager can experience problems if the required network ports are not open.
In a Site Recovery Manager deployment, both the protected site and the recovery site must be able to resolve the vCenter Server instance by name. The correct ports must be open on both sites for uninterrupted communication.

vCenter Server and ESXi Server network port requirements for Site Recovery Manager 6.1

Site Recovery Manager requires certain ports to be open on vCenter Server, Platform Services Controller, and on ESXi Server:

Default PortProtocol or DescriptionSourceTargetDescription
443HTTPSSite Recovery ManagervCenter ServerDefault SSL Web port
443HTTPSSite Recovery ManagerPlatform Services ControllerTraffic from Site Recovery Manager Server to local and remote Platform Services Controller.
902TCP and UDPSite Recovery Manager Server on the recovery siteRecovery site ESXi hostTraffic from the Site Recovery Manager Server on the recovery site to ESXi hosts when recovering or testing virtual machines with IP customization, with configured callout commands on recovered virtual machines, or that use raw disk mapping (RDM). All NFC traffic for updating or patching the VMX files of virtual machines that are replicated using vSphere Replication use this port.

Site Recovery Manager Server 6.1 network ports

The Site Recovery Manager Server instances on the protected and recovery sites require certain ports to be open.

Note: Site Recovery Manager Server at the recovery site must have NFC traffic access to the target ESXi servers.

Default PortProtocol or DescriptionSourceTargetEndpoints or Consumers
443HTTPSSite Recovery ManagervCenter ServerDefault SSL Web Port for incoming TCP traffic
443HTTPSSite Recovery ManagerPlatform Services ControllerTraffic from Site Recovery Manager Server to local and remote Platform Services Controller.
902TCP and UDPSite Recovery Manager Server on the recovery siteRecovery site ESXi hostTraffic from the Site Recovery Manager Server on the recovery site to ESXi hosts when recovering or testing virtual machines with IP customization, with configured callout commands on recovered virtual machines, or that use raw disk mapping (RDM). All NFC traffic for updating or patching the VMX files of virtual machines that are replicated using vSphere Replication use this port.
1433TCPSite Recovery ManagerMicrosoft SQL ServerSite Recovery Manager connectivity to Microsoft SQL Server (for Site Recovery Manager database)
1521TCPSite Recovery ManagerOracle Database ServerSite Recovery Manager database connectivity to Oracle
1526TCPSite Recovery ManagerOracle Database ServerSite Recovery Manager database connectivity to Oracle
9086HTTPSvSphere Web ClientSite Recovery ManagerAll management traffic to Site Recovery Manager Server goes to this port. This includes traffic by external API clients for task automation and HTTPS interface for downloading the UI plug-in and icons. This port must be accessible from the vCenter Server proxy system. Used by vSphere Web Client to download the Site Recovery Manager client plug-in.

Network ports that must be open on Site Recovery Manager and vSphere Replication Protected and Recovery sites

Site Recovery Manager and vSphere Replication require that the protected and recovery sites can communicate.

PortProtocol or DescriptionSourceTargetEndpoints or Consumers
31031Initial replication trafficESXi hostvSphere Replication appliance on the recovery siteFrom the ESXi host at the protected site to the vSphere Replication appliance at the recovery site.
44046Ongoing replication trafficESXi hostvSphere Replication appliance on the recovery siteFrom the ESXi host at the protected site to the vSphere Replication appliance at the recovery site.
8043HTTPSSite Recovery ManagervSphere Replication appliance on the recovery and protected sitesManagement traffic between Site Recovery Management instances and vSphere Replication appliances.
Note: Newly configured replication will use only 31031, existing replications will continue to use 44046 until reconfigured.

Site pairing port requirements

Port
Source
Target
Description
9086
vCenter Server
SRM server target site
vCenter and target SRM communication
9086
SRM server
SRM server on target site
SRM to SRM communication
443
SRM
PSC and vCenter
SRM to vCenter communication – local and remote