Network Firewall Requirements

Following are the Network Firewall Requirements for Gigamon fabrics for Nutanix deployments.

Direction

Type

Protocol

Port

CIDR

Purpose

GigaVUE‑FM Inside Nutanix

Inbound

HTTPS

TCP

443

Anywhere

Any IP

Allows GVMs, GigaVUE Fabric Controllers, and GigaVUE‑FM administrators to communicate with GigaVUE‑FM

Inbound

SSH

TCP

22

Anywhere

Any IP

Allows GVMs, GigaVUE Fabric Controllers, and GigaVUE‑FM administrators to communicate with GigaVUE‑FM

Outbound

Custom TCP Rule

TCP

9902

GigaVUE Fabric Controller IP

Allows GigaVUE‑FM to communicate with GigaVUE Fabric Controllers

GigaVUE Fabric Controller

Inbound

Custom TCP Rule

TCP

9902

GigaVUE‑FM IP

Allows GigaVUE‑FM  to communicate with GigaVUE Fabric Controllers

Outbound

Custom TCP Rule

TCP

9903

GVM IP Subnet

Allows GigaVUE Fabric Controllers to communicate with GVMs

GVM

Inbound

Custom TCP Rule

TCP

9903

GigaVUE Fabric Controller IP

Allows GigaVUE Fabric Controllers to communicate with GVMs

Outbound

Custom UDP Rule

UDP

VXLAN (default 4789)
L2GRE (IP 47)

Tool IP

Allows GVM to communicate and tunnel traffic to the Tool

Outbound

Custom ICMP Rule

ICMP

-

Tool IP

Allows GVM to health check the tool traffic