vMotion port 8000 blocked after ESXi host firewall rule change
search cancel

vMotion port 8000 blocked after ESXi host firewall rule change

book

Article ID: 396132

calendar_today

Updated On:

Products

VMware vSphere ESXi VMware vCenter Server

Issue/Introduction

  • vMotion fails at 20%
  • TCP 8000 is confirmed open between source and destination host on the physical network
  • UI shows Error: Connection closed by remote host, possibly due to timeout.
  • Disabling the host(s) firewall results in successful vMotion
  • vMotion ESXI host firewall rule has vMotion IPs or all IPs allowed

Environment

  • ESXi hosts are installed using a Dell custom image
  • In host CLI 'esxcli network firewall ruleset' list shows a rule named and host firewall rules in the gui show a rule named 'daemon-dellism' which includes tcp port 8000 and allowed IPs don't include vMotion IPs

Cause

daemon-dellism is blocking port 8000 since the vMotion IPs are not in the list

Resolution

Include vMotion IPs in the daemon-dellism allowed IP list