A.05.80 HP Insight Remote Support Advanced and Remote Device Access Security Overview (October 2012)

Protocol Ports Source Destination Function Configurable Optional
TCP 135 Managed
Systems
CMS DCE endpoint resolution. Used by DCOM, and hence,
Windows Management Interface (WMI) and WEBES
No Required
TCP 139 Managed
Systems
CMS NETBIOS Session Service. Used by DCOM, and hence,
Windows Management Interface (WMI) and WEBES
No Required
TCP 1024-
65535
Managed
Systems
CMS Windows Server 2003 Windows Management Interface
(WMI) Communications DCOM dynamic port assignment.
Note that the CMS can be configured to limit this range.
The source port will always be 135.
No Required
UDP 137 Managed
Systems
CMS NETBIOS Name Service. Used by DCOM, and hence,
Windows Management Interface (WMI) and WEBES
No Required
UDP 138 Managed
Systems
CMS NETBIOS Datagram Service. Used by DCOM, and hence,
Windows Management Interface (WMI) and WEBES
No Required
UDP 162 Managed
Systems
CMS SNMP Trap. This is the standard port used by SNMP
managers for listening to traps.
No Required
UDP 445 Managed
Systems
CMS Microsoft File Sharing. Used by DCOM, and hence,
Windows Management Interface (WMI) and WEBES
No Required
ICMP N/A CMS Managed
Systems
Provides system reachability (ping) check during system
discovery and before other operations. Note that HP SIM
can be configured to use TCP port 5989 to simplify firewall
settings.
No Recommended
Integrity Windows Server 2008 Managed Systems
Table C.5. Integrity Windows Server 2008 Connectivity - Firewall/Port Requirements
Protocol Ports Source Destination Function Configurable Optional
TCP 5989 CMS Managed Secured WBEM CI-MOM protocol over HTTPS/SOAP. Yes Required
HP Insight Remote Support Advanced and Remote Device Access (A.05.80)Page 63 of 97
Security Overview
Appendix C: Summary of Network Ports for Servers