<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Securing dynamic UDP/TCP ports used by OM application (and not documented) in Active IQ Unified Manager Discussions</title>
    <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17158#M3530</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No it doesn't - only the static ports listed in the document posted by Adai are used.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 13 Jun 2012 13:13:04 GMT</pubDate>
    <dc:creator>hiyer</dc:creator>
    <dc:date>2012-06-13T13:13:04Z</dc:date>
    <item>
      <title>Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17135#M3521</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;IHAC that had a thorough review by security exprts.&lt;/P&gt;&lt;P&gt;one of their findings was list of ports being listened with "*" source IP.&lt;/P&gt;&lt;P&gt;the ports are over TCP &amp;amp; UDP, and are dynamic - changing with every service restart&lt;/P&gt;&lt;P&gt;the process listening is "dfmmonitor" &amp;amp; "dfmeventd" &lt;/P&gt;&lt;P&gt;these ports are not documented.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would like to know if possible to configure application not to listen to these ports or at least open them on localhost only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you in Advance,&lt;/P&gt;&lt;P&gt;Avishay Mano &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2025 07:03:06 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17135#M3521</guid>
      <dc:creator>avishay</dc:creator>
      <dc:date>2025-06-05T07:03:06Z</dc:date>
    </item>
    <item>
      <title>Re: Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17139#M3523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is no way to do this today.&lt;/P&gt;&lt;P&gt;Pls raise a request for enhancement for the same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;adai&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Dec 2010 06:15:20 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17139#M3523</guid>
      <dc:creator>adaikkap</dc:creator>
      <dc:date>2010-12-24T06:15:20Z</dc:date>
    </item>
    <item>
      <title>Re: Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17144#M3525</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Avishay,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am currently having the same problem at my customer with regard to use of dynamic UDP ports.&amp;nbsp; We can't even identify which services are using the ports.&amp;nbsp; In your case were "dfmmonitor" &amp;amp; "dfmeventd" listening on dynamic ports on the filer? Did you ever find an answer to how to secure the system from opening these dynamic ports?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you in advance for any insight.&amp;nbsp; We are running up against some regulation issues and need solve this security problem.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;/P&gt;&lt;P&gt;Joyce&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jun 2012 14:20:38 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17144#M3525</guid>
      <dc:creator>joycem</dc:creator>
      <dc:date>2012-06-08T14:20:38Z</dc:date>
    </item>
    <item>
      <title>Re: Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17149#M3527</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Joyce,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Looks like there is no way in the current product to make them listen in fixed ports. For a detailed list of port used by DFM pls take at look at the below FAQ link.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="active_link" href="https://library.netapp.com/ecmdocs/ECMM1278650/html/faq/index.shtml#_3.14" title="https://library.netapp.com/ecmdocs/ECMM1278650/html/faq/index.shtml#_3.14" target="_blank"&gt;https://library.netapp.com/ecmdocs/ECMM1278650/html/faq/index.shtml#_3.14&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;adai&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2012 06:31:40 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17149#M3527</guid>
      <dc:creator>adaikkap</dc:creator>
      <dc:date>2012-06-13T06:31:40Z</dc:date>
    </item>
    <item>
      <title>Re: Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17153#M3528</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the response.&amp;nbsp; I don't see any info on dynamic ports in use in the FAQ.&amp;nbsp; Can you tell me if DFM requires any dynamic ports to be open on the FAS system itself?&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Joyce&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2012 13:05:25 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17153#M3528</guid>
      <dc:creator>joycem</dc:creator>
      <dc:date>2012-06-13T13:05:25Z</dc:date>
    </item>
    <item>
      <title>Re: Securing dynamic UDP/TCP ports used by OM application (and not documented)</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17158#M3530</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No it doesn't - only the static ports listed in the document posted by Adai are used.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2012 13:13:04 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Securing-dynamic-UDP-TCP-ports-used-by-OM-application-and-not-documented/m-p/17158#M3530</guid>
      <dc:creator>hiyer</dc:creator>
      <dc:date>2012-06-13T13:13:04Z</dc:date>
    </item>
  </channel>
</rss>

