This section provides a list of ports used by vRealize Suite Lifecycle Manager for product and integration communication.

Table 1. Required ports and allowed endpoints for integration and communication with VMware services in Cloud
Service TCP Port Required allowed URL
My VMware 443 https://apigw.vmware.com
Marketplace 443 https://gtw.marketplace.cloud.vmware.com
Updates 443 https://vapp-updates.vmware.com
Compatibility 443 https://simservice.vmware.com
Patch and policy refresh repository 443 https://vrealize-updates.vmware.com
VMware Cloud 443 https://console.cloud.vmware.com
VMware Cloud API 443 https://api.mgmnt.cloud.vmware.com
Subscriptions API 443 https://vconnect.vmware.com

Additional and required allowed URLs are listed in the following table.

My VMware API host names Marketplace API host names Marketplace API host URLs
apigw.vmware.com marketplace.vmware.com https://gtw.marketplace.cloud.vmware.com
download2.vmware.com

download3.vmware.com

drd6c1w7be.execute-api.us-west-1.amazonaws.com (*.amazonaws.com)
  • https://cspmarketplacemainbuck.s3.us-west-2.amazonaws.com
  • https://cspmarketplaceproductiondownloadable.s3.us-west-2.amazonaws.com and https://cspmarketplacemainbuck.s3.us-west-2.amazonaws.com
*.akamaiedge.net
Note:
  • vRealize Suite Lifecycle Manager always initiates the communication to retrieve or to send data to the VMware services. You can configure your network to permit outbound traffic and block inbound traffic to the specified port without impacting the vRealize Suite Lifecycle Manager features that integrate with the VMware services.
  • Ensure that any downloads or API host URLs that are redirected from VMware Marketplace are allowed.
Table 2. Required ports for integration and communication with VMware on-premises products
Product or Integration TCP Port Number
vRealize Automation appliance

vRealize Automation 7.6 – 8008, 5480, 443, 22

vRealize Automation 8.x – 443, 22

vRealize Automation IaaS server nodes vRealize Automation 7.6 – 443
vRealize Automation proxy vRealize Automation 7.6 – 443
vRealize Business for Cloud server/collector appliances 5480, 443, 22
vRealize Operations Manager analytics cluster appliances 443, 22
vRealize Operations Manager remote collector appliances 443, 22
vRealize Log Insight appliances 443, 9543, 16520, 22
vRealize Network Insight 443, 22
Workspace ONE Accessappliances 8443, 443, 22

9999, 9898, 9000, 9694 (Use these for a cluster)

vRealize Orchestrator appliances 443
vCenter Server server instances 443
ESXi host instances 443
Content management host (GitLab) 443
Note: ICMP protocol must be enabled between vRealize Suite Lifecycle Manager and the products that are being managed.
Note: For more information on ports, see the vRealize Suite Lifecycle Manager Security Hardening Guide and VMware Ports and Protocol tool.