Skip to main content
NetApp Response to Russia-Ukraine Cyber Threat
In response to the recent rise in cyber threat due to the Russian-Ukraine crisis, NetApp is actively monitoring the global security intelligence and updating our cybersecurity measures. We follow U.S. Federal Government guidance and remain on high alert. Customers are encouraged to monitor the Cybersecurity and Infrastructure Security (CISA) website for new information as it develops and remain on high alert.
NetApp Knowledge Base

Can RPC port 111(portmap) be disabled in ONTAP?

Views:
1,112
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
nas
Last Updated:

 

Applies to

  • Data ONTAP operating in 7-Mode
  • Data ONTAP 8
  • ONTAP 9

Answer

  • There is currently no way to disable portmapper (port 111) in either Data ONTAP 7-Mode
  • In ONTAP 9.3 and earlier (including Clustered Data ONTAP 8.x), the portmap service (rpcbind) was always accessible on port 111 in network configurations that relied on the built-in ONTAP firewall rather than a third-party firewall.

  • Starting in ONTAP 9.4, you can modify firewall policies to control whether the portmap service is accessible on particular LIFs.

  • Starting in ONTAP 9.7, the portmap firewall service is eliminated, and the portmap port is opened automatically for all LIFs that support the NFS service.

Additional Information

For more information, see Configuring firewall services and policies for LIFs

 

Scan to view the article on your device