Symptoms:
VMware vCenter Server 7.x
VMware vCenter Server 8.x
During the upgrade, the settings in the firewall that help vCenter work properly get changed or lost.
Rules needed for vCenter to operate, especially for services like VMDir and VMIdentity, are not kept after the upgrade. Because these rules are missing, certain ports, like RPC port 2012, get blocked. These blocked ports stop the vCenter server nodes from talking to each other and working together correctly
This issue is resolved in vCenter Server 8.0 Update 1 and later releases
Workaround:
If feasible for your environment, manually add firewall rules to allow traffic between vCenter nodes (e.g., allowing RPC port 2012).
The workaround requires manual intervention and may not be feasible in all environments..