Page tree

This topic lists the default ports and protocols used by the various product components, depending on user roles and permissions.

The following information is useful for one-time configurations, daily operations, and understanding how various product components communicate with one another. This information can also be used to decide which ports to open, depending on your security requirements. 

Note

For a single server deployment, the Indexer and Configuration Database ports are not accessible from other hosts (by default). In this case, you do not need to set up a firewall for these ports.

Related topics
ComponentDefault PortFromToProtocol
Useful for daily operations
Console Server 9797
(configurable)
CLI/web browserConsole ServerHTTP
9443
(configurable)
 CLI/web browserConsole Server HTTPS 
Useful for data collection
Collection Station (Configuration Channel)8080
(configurable)
Collection AgentCollection StationHTTP
Collection Station (Payload Service)41414
(configurable)
Collection AgentCollection StationAvro
Managed node (target host from which you want to collect data)22

Collection Station

OR

Collection Agent

Managed node from which data must be collected remotelySSH
Managed node (target host from which you want to collect data)445

Collection Station

OR

Collection Agent

Managed node from which data must be collected remotelySMB

Useful for understanding internal communications between the IT Data Analytics product components

*The following ports are internal and do not require any firewall changes for a single-server deployment.

Search9797
(configurable)
Console ServerSearchHTTP
Configuration Database9999
(configurable)
Console ServerConfiguration DatabaseJDBC
9999
(configurable)
SearchConfiguration DatabaseJDBC
9999
(configurable)
Collection StationConfiguration DatabaseJDBC
Indexer

9300
(configurable)
Console ServerIndexerTCP
9300
(configurable)
SearchIndexerTCP
9300
(configurable)
Collection StationIndexerTCP
Useful for understanding communication between product components and integrations

Email integration
(SMTP server used for sending email)

25SearchSMTP serverSMTP
25Console ServerSMTP serverSMTP

BMC ProactiveNet Performance Management integration

(Operations Console)

Note: Beginning with version 10.0, BMC ProactiveNet Performance Management is known as BMC TrueSight Infrastructure Management.

80
(configurable)
Console ServerBMC ProactiveNet Performance Management serverHTTP
BMC TrueSight Operations ManagementBMC TrueSight Presentation Server

BMC ProactiveNet Performance Management cell integration

(Event management)

1828
(configurable)

SearchBMC ProactiveNet Performance Management serverTCP
Collection Station

For more information about the ports required for an HTTPS connection, see the instructions for configuring a secured connection.