TCP and UDP ports for VMware vSphere Update Manager:
Product | Port | Protocol | Source | Target | Purpose |
Update Manager | 80 | TCP | Update Manager Server | www.vmware.com and xml.shavlik.com | To obtain metadata for the updates, Update Manager must be able to connect to http://www.vmware.com and http://xml.shavlik.com |
Update Manager | 80 | TCP | ESXi/ESX Host | Update Manager Host | ESXi/ESX Host to Update Manager Server. The reverse proxy forwards the request to port 9084 |
Update Manager | 80 | TCP | Update Manager Server | vCenter Server | Update Manager to vCenter Server communication |
Update Manager | 443 | TCP | Update Manager Server | www.vmware.com and xml.shavlik.com | To obtain metadata for the updates, Update Manager must be able to connect to http://www.vmware.com and http://xml.shavlik.com |
Update Manager | 443 | TCP | ESXi/ESX Host | Update Manager Server | ESXi/ESX Host to Update Manager Server . The reverse proxy forwards the request to port 9084 |
Update Manager | 443 | TCP | vCenter Server | Update Manager Server | vCenter Server to Update Manager Server. The reverse proxy forwards the request to port 8084 |
Update Manager | 735 | TCP | Update Manager Server | Virtual Machines | Update Managerlistenerport (rdevServer.exe) part of the Remote Device Server used for virtual machine patching. |
Update Manager | 902 | TCP | Update Manager Server | ESXi/ESX Host | To push patches and updates from Update Manager to the ESXi/ESX Hosts to be updated |
Update Manager | 1433 | TCP | Update Manager Server | Microsoft SQL Server | Update Manager to Microsoft SQL Server connectivity (for UM Database) |
Update Manager | 1521 | TCP | Update Manager Server | Oracle Database Server | Update Manager to Oracle connectivity (for UM Database) |
Update Manager | 8084 | TCP | Update Manager Server | Update Manager Client Plugin | SOAP between components of Update Manager Server and the vCenter Update Manager client plug-in. Configurable at install. Note: In an embedded Update Manager setup in version 6.5, if there are multiple vCenter/VUM servers in enhanced link mode, port 8084 needs to be open with two way communication between each vCenter/VUM server in order for Update Manager to be viewable in enhanced link mode in the web client. |
Update Manager | 9084 | TCP | ESXi/ESX host | Update Manager Server | ESXi/ESX hosts connect to the VUM (VMware Update Manager) webserver listening for updates. Configurable at install. |
Update Manager | 9087 | TCP | Update Manager Server | Update Manager Client Plugin | Port used for uploading host update files. Configurable at install. |
Update Manager | 9000 to 9100 | TCP | ESXi/ESX Host | Update Manager Server | This is the recommend port range from which to choose ports for Update Manager if ports 80 and 443 are already in use. Update Manager automatically opens these ports for ESX Host scanning and remediation. |
Update Manager | 9087 | TCP | ESXi Host | Update Manager Server | ESXi hosts connect to the VUM (VMware Update Manager) webserver listening for updates. |