Management Suite port usage

When using Management Suite in an environment that includes firewalls (or routers that filter traffic), information on which ports need to be opened at the firewalls is crucial. The following table lists the ports used by the Management Suite components. This information focuses on required router and firewall configurations. Ports used only locally and ports used only to communicate with devices running legacy versions of Management Suite are not included.

Feature TCP Ports Inbound / Outbound
Alert management system 38292 In
Inventory 5007 in
Management Gateway using HTTPS 443 HTTPS In/Out
Management Gateway using HTTP

80 HTTP

443 HTTPS

In

Out

Management Web services 80 HTTP In
Remote control 9535, 9595 Out
Secure inventory/Web console 443 HTTPS In
Software distribution (policy) 12175, 12176 In
Software distribution (push) 9594, 9595 Out
Software distribution (targeted multicasting) 33354 Out
LANDesk trusted access 4444, 7777

In

Avocent Management Platform (RBA, licensing, reporting) 8443, 8092 In/Out

The table summarizes the ports that need to be opened at the firewall in order to enable specific product features. Inbound and outbound are based on the assumption that the core server / console is inside the firewall, and the devices to be managed are outside the firewall. Inbound means that a service on the core server is listening at the indicated port and that devices will open connections to it. Outbound means that the device outside the firewall is listening at the indicated port and the core server (or console in the case of remote control) will open connections to it.

If certificate-based security is used for remote control, the TCP 9594 port needs to be enabled (core server to managed device and console to core server). When a computer is chosen in the network view, a ping discovery is sent to the device on UDP port 9595. If the port is blocked, there will be no response and the remote control option will be dimmed on the shortcut menu.