IBM Support

Firewall Rules Required for Version 7 Remote Access

Troubleshooting


Problem

Version 7 HMC uses a Web browser-based remote client. The remote client connects using https on port 443, but it might also require port 9960 to be open in any external firewall.

Resolving The Problem

Each HMC contains a Web server that can be configured to allow remote access for a specified set of users. If another external firewall exists between the Web browser and the HMC, then the ports must be accessible and the firewall should allow incoming requests on these ports. The System i and System p Operations Guide for the Hardware Management Console and Managed Systems documents the ports used.

Ports used by a Web browser for communications to the HMC follows:

tcp 443Secure browser access to Web server communication
tcp 8443Secure browser access to Web server communication (7.7.3 and earlier)
tcp 9960Browser applet communication (7.7.3 and earlier)
Remote virtual terminal (vtty) - all versions.

8443 blocked
This is required for the remote ASMI access in version 7.7.3 and earlier.

9960 blocked
When using the Firefox browser, most functions including ASMI and system plan work fine even with 9960 blocked. Virtual terminal to Linux and IBM AIX LPARs is one task that requires the 9960 port.

In Versions 7.7.3 and earlier, Microsoft Internet Explorer 6 and 7 browser requires 9960 to be open for most functions. When using Internet Explorer with 9960 blocked, a user is able to log in and reach the system manager screen. If the user attempts to access any task or link, the user is forcibly disconnected with the message Connectivity to the console failed. Contact your support personnel to determine if your browser is configured properly to connect to the console.

This is a print screen of the message "Connectivity to the console failed.  Contact your support personnel to determine if your browser is configured properly to connect to the console."

[{"Product":{"code":"SSB6AA","label":"Power System Hardware Management Console Physical Appliance"},"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Component":"HMC","Platform":[{"code":"PF012","label":"IBM i"}],"Version":"5.4.5","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}}]

Historical Number

469344976

Document Information

Modified date:
22 September 2021

UID

nas8N1014002