Skip to main content
NetApp Knowledge Base

What ports to I need open in my firewall for Cloud InSights Workload Security to communicate with ONTAP

Views:
1,324
Visibility:
Public
Votes:
2
Category:
ontap-9
Specialty:
nas
Last Updated:

Applies to

  • ONTAP 9+
  • Workload Security

Answer

Below are the ports used for communication between ONTAP and the Cloud Secure agent
 
Protocol Port Destination Direction Description

TCP

389(LDAP)
636 (LDAPs / start-tls)

LDAP Server URL

From Cloud Secure to LDAP

Connect to LDAP

TCP

443

SVM Management IP Address

From Cloud Secure to ONTAP

API communication with ONTAP

TCP

35000 - 55000

SVM data LIF IP Addresses

Bidirectional between ONTAP and Cloud Secure

Communication with ONTAP for Fpolicy events

TCP 7 (ECHO) SVM data LIF IP Addresses and Cluster mgmt interface Bidirectional between ONTAP and Cloud Secure Bidirectional between ONTAP and Workload Security Agent
TCP 22 SSH from Agent to cluster mgmt Interface SSH from Agent to cluster mgmt Interface SSH from Agent to cluster mgmt Interface

 

Additional Information

  • When discovering Cloud Volumes ONTAP, ensure that your cloud provider (Azure, AWS, GCP) network security groups are not blocking or overriding your Workload Security / ONTAP firewall rules. 
  • For more information see Cloud Secure Documentation Center

 

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.