Source
|
Destination
|
Protocols
|
Ports
|
Description
|
Parallels Client
|
Tenant Broker - HALB
|
TCP, UDP
TCP, UDP
TCP, UDP
|
80, 443
3389
20009
|
Management and user session connections.
Optional - Used for user session if RDP Load Balancing is enabled.
Client Manager shadowing via Firewall (indirect network connection).
|
|
Tenant Broker - RAS Secure Client Gateway (Normal and Forwarding modes)
|
TCP, UDP
TCP, UDP
TCP, UDP
UDP
|
80, 443
3389
20009
20000
|
Management and user session connections.
Optional - Used for user session if RDP Load Balancing is enabled.
Client Manager shadowing via Firewall (indirect network connection).
Note: Since RAS v16, Secure Client Gateways (in Forwarding mode) do not support client management.
Secure Client Gateway lookup broadcast.
|
|
Tenant - RDP session
|
TCP, UDP
|
3389
|
Used for user session connections in Direct Mode only. RDP connection is always encrypted.
|
Web browser (HTML5)
|
Tenant Broker - HALB
|
TCP
|
443
|
User access to Parallels RAS HTML5 Client (on Secure Client Gateway in Normal mode) through HALB.
|
|
Tenant Broker - RAS Secure Client Gateway
|
TCP
|
443
|
User access to Parallels RAS HTML5 Client (on Secure Client Gateway in Normal mode).
|
Tenant Broker - RAS Secure Client Gateway in Forwarding Mode
|
Tenant Broker - RAS Secure Client Gateway in Normal Mode
|
TCP, UDP
TCP, UDP
|
80, 443
3389
|
Management and user session connections.
Optional - Used for user session if RDP Load Balancing is enabled.
|
|
RAS Performance Monitor
|
TCP
|
8086
|
Agent (Telegraf service) sends collected performance data to InfluxDB.
|
Tenant Broker - RAS Secure Client Gateway in Normal Mode
|
Tenant - RAS RD Session Host Agent
Tenant - RAS Guest Agent
Tenant - RAS Remote PC Agent
|
TCP, UDP
|
3389
|
User session connections to Tenant's hosts.
|
|
Tenant - RAS Publishing Agent
|
TCP
|
20002
|
Communications with RAS Secure Client Gateways and the RAS Console.
|
|
Tenant Broker - RAS Publishing Agent
|
TCP
|
20002
|
Communications with Tenant Broker RAS Publishing Agent related to configuration synchronization and status reporting.
|
|
RAS Performance Monitor
|
TCP
|
8086
|
Agent (Telegraf service) sends collected performance data to InfluxDB.
|
|
Localhost
|
TCP
|
20020
|
Communication with RAS HTML5 Gateway web server (NodeJS).
|
Tenant Broker - RAS Console
|
RAS Reporting
|
TCP
|
30008
|
RAS Console is connected to Master RAS Publishing Agent which communicates with RAS Reporting (installed on the same host as SSRS). SSRS talks to SQL via TCP 1433 (or dynamic if 1433 is not established in the settings).
|
|
Tenant Broker - HALB
|
TCP, UDP
|
31006
|
Used for configuration.
|
|
Tenant Broker - Secure Client Gateways
|
TCP
|
135, 445, 49179
|
Remote install push/takeover of software.
|
|
Tenant Broker - RAS Publishing Agent
|
TCP
TCP
|
20002, 20001
135, 445, 49179
|
Communication with RAS Publishing Agent and redundancy.
Remote install push/takeover of software.
|
|
RAS Performance Monitor
|
TCP
|
3000
|
Performance Dashboard in the Monitoring category (Grafana connection).
|
Tenant Broker - HALB
|
Tenant Broker - HALB
|
VRRP
|
112
|
HALB to HALB communication used for automatic assignment of VIP to active HALB.
|
|
Tenant Broker - RAS Secure Client Gateway in Forwarding mode
|
TCP, UDP
TCP, UDP
|
80, 443
3389
|
Management and user session connections.
Optional - Used for user session if RDP Load Balancing is enabled.
|
|
Tenant Broker - RAS Secure Client Gateway in Normal mode
|
TCP, UDP
TCP, UDP
TCP, UDP
|
80, 443
3389
20009
|
Management and user session connections.
Optional - Used for user session if RDP Load Balancing is enabled.
Client Manager shadowing via Firewall (indirect network connection).
|
Tenant - RAS Publishing Agent
|
Tenant Broker - RAS Publishing Agent
|
TCP
|
20003
|
RAS Publishing Agent communicates with Tenant Broker to join Tenant Broker, synchronize configuration and statuses.
|
|
RAS Performance Monitor
|
TCP
|
8086
|
Agent (Telegraf service) sends collected performance data to InfluxDB.
|