SCSM Prerequisites Part 1 – Firewall Ports

In this series of posts I’ll be identifying all the prerequisites necessary to deploy and configure the Service Manager environment.  Part one identifies the required firewall ports.

There are two types of Management Server.  One is known simply as a Management Server and the other is known as the Data Warehouse Management Server.  Management Servers manage data in the live or operational database (ServiceManager) and Data Warehouse Management servers manage data held in the historical reporting databases (DWDataMart, DWRepository, DWStaggingAndConfig, Analysis, OMDW Data Mart, and CMDW Data Mart).  For the purpose of this blog post I have referred to Management Servers as Operational Management Servers and the Management Server database as the Operational DB.

Operational Management Server
PurposeFromToProtocolPort
Management server database accessAll Operational Management ServersAll SQL servers that host the Operational DB, including cluster names and AlwaysOn listeners as necessaryTCP1433
Management server console accessOperational Management Servers Clients with the console installed Cireson Tier Watcher client applicationManagement Servers designated as console servers in your designTCP5724
Data Warehouse
PurposeFromToProtocolPort
Data Warehouse database accessAll Operational Management Servers All Data Warehouse Management ServersAll SQL servers that host the Data Warehouse DB, including cluster names and AlwaysOn listeners as necessaryTCP1433
Data Warehouse Analysis Services accessAll Operational Management Servers All Data Warehouse Management ServersAll SQL servers that host the Data Warehouse Analysis Services, including cluster names and AlwaysOn listeners as necessaryTCP2383
Data Warehouse Reporting ServicesAll Operational Management Servers All Data Warehouse Management Servers Web browserSQL Reporting Services serverTCP80 or 443
Web Portals
PurposeFromToProtocolPort
Microsoft SCSM Self Service Portal database accessSelf service portal serverAll SQL servers that host the Operational DB, including cluster names and AlwaysOn listeners as necessaryTCP1433
Microsoft SCSM Self Service Portal client accessWeb browserSelf service portal servers, including load balancersTCP80, and/or 443
Cireson portal installerPoint of download from Cireson websiteInternetTCP443
Cireson console licensing applicationAll Operational Management ServersInternetTCP443
Cireson portal Cachebuilder database accessAll servers where the Cachebuilder is installedAll SQL servers that host the Operational DB, including cluster names and AlwaysOn listeners as necessaryTCP1433
Cireson portal accessWeb browserSelf service portal servers, including load balancersTCP80, and/or 443

N.B. the Cireson portal installer, and Cireson console licensing application can be operated in an offline mode for servers in an environment that have restricted internent access.  The portal installer just needs to be executed on a computer that does have internet access so that the installer files are downloaded, then they can be copied to the portal server(s).  The console licensing app will need the license keys to be manually entered by an administrator that has internet access on another server or their PC.

One Reply to “SCSM Prerequisites Part 1 – Firewall Ports”

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.