Additional open ports and their usage in VCF Operations for Networks
search cancel

Additional open ports and their usage in VCF Operations for Networks

book

Article ID: 439175

calendar_today

Updated On:

Products

VCF Operations for Networks

Issue/Introduction

The list of required open ports for VCF Operations for Networks is available on VMware Ports and Protocols; however, certain ports observed in the environment may not be included in this reference.

A cybersecurity scan conducted using Nmap may identify multiple open ports within the VCF Operations for Networks environment. While such findings can raise security concerns, many of these ports are expected and used for internal communication and application functionality.

This knowledge base article explains the identified ports, their purpose, and their usage.

Environment

VCF Operations for Networks 6.14.x
VCF Operations for Networks 9.x

Resolution


Most commonly used ports are documented on the VMware Ports and Protocols page. However, additional ports may be observed in the environment based on specific configurations and internal application communication.

The following section provides a list of ports identified in the environment that may not be documented on the VMware Ports and Protocols page, along with their associated services and usage within VCF Operations for Networks.

Host Name Network PortsProcess/Services pathPurpose/Justification
aria-networks-platform

TCP 11107/usr/lib/jvm/openjdk-java17-amd64/bin/java

1) Thrift/RPC listeners used for inter-service calls inside the platform cluster.

2) VCF Operations for Networks platform (OpenJDK; ServiceThriftListener class family).

TCP 11109
TCP 11112
UDP 381231) Ephemeral UDP socket used by the Java runtime (metrics, discovery, or datagram RPC).

2) VCF Operations for Networks platform (OpenJDK).

UDP 38714
UDP 39843
UDP 43248
UDP 47238
UDP 47354
UDP 58606
aria-networks-collector

TCP 111031) Thrift/RPC endpoints for collector-to-platform or intra-collector communication.

2) VCF Operations for Networks collector (OpenJDK).

TCP 11108
TCP 11110
TCP 11199

 

Additional Information

If your scan identifies any additional open ports not reported in this KB or on the VMware Ports and Protocols page, please raise a support ticket with Broadcom Support and select VCF Operations for Networks as the product.

Creating and managing Broadcom support cases