Required Ports

  • Do not block any communication between the Control Panel and compute resources.
  • Monitis is used for autoscaling of servers built using OnApp versions previous to 4.2 until autoscaling is switched off for such server(s). In this case, virtual servers and the CP server require outbound access to monitis.com over ports 80/443.
TypePortDescription

Control Panel Server




22 SSH connections from the outside world to compute resources and backup servers (inbound and outbound)
25 Email notifications (outbound only)
80/443Control Panel access (inbound only). Access to api.onappcdn.com for CDN provisioning (outbound only).
111Portmapper/rpcbind connection to compute resources (outbound only)
161
162
SNMP connection to compute resources and backup servers for stats gathering (outbound only)
443 Licensing server for OnApp versions 5.0 and up (outbound only)
4995 vmon from compute resources (obsolete in 3.0)
5555Licensing server for OnApp versions prior to 5.0 (outbound only). The hostname of the licensing server is licensing.onapp.com
5672 RabbitMQ bundled with OnApp (inbound) and external RabbitMQ (outbound)
8080 StorageAPI over the management network
30000-40000VS Console Ports (vnc_proxy which can be changed in Settings > Configuration)

Xen+KVM Compute Resources

22 SSH connections from the CP server (inbound and outbound)
161
162
SNMP (for stats gathering)
5900-6000VNC on the compute resources (inbound only)
8080 StorageAPI over the management network

Zabbix Server

80 Control Panel Server for deployment of a new autoscaling VS (inbound only)

10050 

10051 

Zabbix server for autoscaling

vCloud Director and vCenter

Custom

An open outbound port is required to connect to vCD and vCenter. You can set a custom port, by default it's 443.

Virtual Server

22 SSH connections from the CP server (inbound only)

Application Server

21 FTP
22 SSH connections from the CP server (inbound only)
25
143
567
Email services
80
443
Apache 
2002
2003
2004
2005 
Application servers

8009
8080
8443

Java

Backup Servers


22 SSH connections from CP server (inbound only)
161
162
SNMP (for stats gathering)
2049 

NFS connections from compute resources and CP server (inbound only)

The port is required only if using NFS for Backup/Template storage.

8080 Storage API over the management network

Integrated Storage

CloudBoot management network requires the same ports as static compute resources.

SAN network should not have port limits, must be separated and have only CloudBoot compute resources or backup servers attached to it.

CDN Edge ServerTCP/22
TCP/80
TCP/443
TCP/1935
TCP/4949
TCP/5001
TCP/8081
TCP/8083
TCP/8084
TCP/8085
TCP/8086
TCP/UDP/554
All ports inbound only
TCP/UDP/53 
TCP/80 
TCP/443
TCP/5001
TCP/5667
TCP/5672
TCP/8080 
TCP/8140 
UDP/25826
All ports outbound only