After your SDDC is deployed and configured in VMware Cloud on AWS, you must configure firewall rules for secure communication.

Procedure

  1. Log in to the VMC Console.
  2. On the Networking & Security tab, click Gateway Firewall.
  3. Configure the following firewall rules:
    Firewall Rule Source Destination Service/Applied To
    Go to the Management Gateway tab and add an inbound rule that allows appliance to communicate with the vCenter Server over HTTPS. Any or appliance IP address vCenter HTTPS
    Go to the Management Gateway tab and add an outbound rule that allows the vCenter Server to communicate with the appliance. vCenter Any or appliance IP address Any
    Go to the Compute Gateway tab and add an uplink rule that allows appliance and VMs to communicate with the Carbon Black Cloud. Any Any Any
    Note: You can narrow rules for specific URLs based on network settings of your organization. Make sure that the appliance has external connectivity with the Carbon Black Cloud.