vMotion port 8000 blocked after ESXi host firewall rule change
book
Article ID: 396132
calendar_today
Updated On:
Products
VMware vSphere ESXiVMware vCenter Server
Issue/Introduction
vMotion fails at 20%
TCP 8000 is confirmed open between source and destination host on the physical network
UI shows Error: Connection closed by remote host, possibly due to timeout.
Disabling the host(s) firewall results in successful vMotion
vMotion ESXI host firewall rule has vMotion IPs or all IPs allowed
Environment
ESXi hosts are installed using a Dell custom image
In host CLI 'esxcli network firewall ruleset' list shows a rule named and host firewall rules in the gui show a rule named 'daemon-dellism' which includes tcp port 8000 and allowed IPs don't include vMotion IPs
Cause
daemon-dellism is blocking port 8000 since the vMotion IPs are not in the list
Resolution
Include vMotion IPs in the daemon-dellism allowed IP list