Firewall Configuration on Windows Agentless Endpoints
Valid on Windows Server 2008 and Windows 7 Enterprise
The PUPM Windows Agentless connector uses port 135 (the DCOM port) to connect to Windows Agentless endpoints. The PUPM Windows Agentless connector is part of the JCS. After the connector connects to the endpoint, it uses a dynamic port (above 1000) for communication with the WMI (Windows Management Instrumentation) service.
If the Windows firewall is enabled on a Windows Agentless endpoint, the firewall can block both the connection to port 135 and the dynamic port. If the Windows firewall blocks these connections, the Enterprise Management Server cannot communicate with the endpoint. Therefore, you cannot create Windows Agentless endpoints or discover service accounts and scheduled tasks on the endpoint.
If the Windows firewall is enabled, configure the firewall so that the PUPM Windows Agentless connector can connect to the endpoint. When you configure the firewall, open port 135 and specify that the firewall permits any traffic arriving to the WMI service from dynamic RPC ports.
| Copyright © 2012 CA. All rights reserved. |
|