Firewall recommendations for Thales Vormetric Data Security Manager (DSM)

The file encryption feature in IBM Storage Scale uses two ports to communicate with the Thales Vormetric Data Security Manager (DSM) product.

DSM is one of the products that IBM Storage Scale supports as a Remote Key Management server for file encryption. The following table lists the recommended ports:
Table 1. Firewall recommendations for DSM
Port Number Protocol Service Components
8445 TCP DSM administration web GUI The mmsklmconfig command for retrieving a server certificate chain
5696 TCP DSM Key Management Interoperability Protocol (KMIP) interface The IBM Storage Scale daemon for retrieving encryption keys
For more information see Preparation for encryption.