Archives for 2021

NSServices in Vmware NSX-t 3.1

I was having issues finding the list of all default NSServices on docs.vmware.com. So with the help fo a nsservices.json file I compiled a list.

I have extracted ICMPALG, and L4 Port Set.

ICMP

Display NameProtocolICMP type
ICMP ICMPv43
ICMP Echo ReplyICMPv40
ICMP Echo RequestICMPv48
ICMP RedirectICMPv45
ICMP Router AdvertisementICMPv49
ICMP Router SolicitationICMPv410
ICMP Source QuenchICMPv44
ICMP Time ExceededICMPv411
ICMPv4-ALLICMPv4
ICMPv6-ALLICMPv6
IPv6-ICMP Destination UnreachableICMPv61
IPv6-ICMP Echo ReplyICMPv6129
IPv6-ICMP Echo RequestICMPv6128
IPv6-ICMP Multicast Listener DoneICMPv6132
IPv6-ICMP Multicast Listener QueryICMPv6130
IPv6-ICMP Multicast Listener ReportICMPv6131
IPv6-ICMP Neighbor AdvertisementICMPv6136
IPv6-ICMP Neighbor SolicitationICMPv6135
IPv6-ICMP Packet Too BigICMPv62
IPv6-ICMP Parameter ProblemICMPv64
IPv6-ICMP Time ExceededICMPv63
IPv6-ICMP Version 2 Multicast ListenerICMPv6143

Application Layer Gateway (ALG)

Display nameDestination port
FTP21
MS_RPC_TCP135
MS_RPC_UDP135
ORACLE_TNS1521
SUN_RPC_TCP111
SUN_RPC_UDP111
TFTP69

L4 Port Set

Display NameProtocolPort
AD ServerTCP1024
Active Directory ServerTCP464
Active Directory Server UDPUDP464
CIM-HTTPTCP5988
CIM-HTTPSTCP5989
DCM Java Object Cache portTCP7100
DHCP, MADCAPUDP2535
DHCP-ClientUDP68
DHCP-ServerUDP67
DHCPv6 ClientUDP546
DHCPv6 ServerUDP547
DNSTCP53
DNS-UDPUDP53
Directory ServicesTCP5725
EdgeSync serviceTCP50636
EdgeSync service/ADAMTCP50389
Enterprise Manager RMI portTCP1850
Enterprise Manager Reporting portTCP3339
Enterprise Manager Servlet port SSLTCP1810
Enterprise ManagerAgent portTCP1831
Exchange ActiveSyncUDP2883
For X.400 connections over TCPTCP102
H323 Call SignalingTCP1720
H323 Gatekeeper DiscoveryUDP1718
HBR Server AppTCP5480
HTTPTCP80
HTTPSTCP443
HTTPS, net.tcp bindingTCP32843,32844,32845
IBM DB2TCP5000
IKE (Key Exchange)UDP500
IKE (NAT Traversal)UDP4500
IMAPTCP143
IMAP_SSLTCP993
ISAKMPUDP500
Java Object Cache portTCP7000
KERBEROSTCP88
KERBEROS-TCPTCP88
KERBEROS-UDPUDP88
LDAPTCP389
LDAP Global CatalogTCP3268
LDAP-UDPUDP389
LDAP-over-SSLTCP636
LDAP-over-SSL-UDPUDP636
Log LoaderTCP44000
MGCP (TCP)TCP2428
MGCP (UDP)UDP2427
MS CustomizableTCP64327
MS Replication serviceTCP808
MS Unified Messaging serverTCP5060,5061,5062
MS Unified Messaging server - Client AccessTCP5075,5076,5077
MS Unified Messaging server-PhoneTCP5060,5061,5065,5066,5067,5068
MS-DSTCP445
MS-DS-TCPTCP445
MS-DS-UDPUDP445
MS-SQL-MUDP1434
MS-SQL-M-TCPTCP1434
MS-SQL-STCP1433
MSN (TCP)TCP1863
MSN (UDP)UDP1863
Microsoft Media Server (TCP)TCP1755
Microsoft Media Server (UDP)UDP1755
MySQLTCP3306
NBDG-Broadcast-V1UDP138
NBNS-Broadcast-V1UDP137
NFS (TCP)TCP2049
NFS (UDP)UDP2049
NFS ClientTCP111
NFS Client UDPUDP111
NFS-Server-TCPTCP2049
NFS-Server-UDPUDP2049
NNTPTCP119
NNTP_SSLTCP563
NTPUDP123
NTP Time ServerUDP123
NetBios Datagram (TCP)TCP138
NetBios Datagram (UDP)UDP138
NetBios Name Service (TCP)TCP137
NetBios Name Service (UDP)UDP137
NetBios Session Service (TCP)TCP139
NetBios Session Service (UDP)UDP139
OC4J Forms / Reports InstanceTCP8888
OC4J Forms / Reports Instance (8889)TCP8889
ORACLE-FORM-SERVICESTCP9000
ORACLE-HTTPTCP7777
ORACLE-XDB-FTPTCP2100
OS AgentTCP14000
Office Server Web Services, HTTP, SSLTCP56737,56738
Office communication serverTCP5075,5076,5077
OracleTCP1521
Oracle Connection Manager (CMAN)TCP1630
Oracle Connection Manager Admin (CMAN)TCP1830
Oracle Enterprise Manager Web ConsoleTCP5500
Oracle Forms Server 6 / 6iTCP9000
Oracle GIOP IIOPTCP2481
Oracle GIOP IIOP for SSLTCP2482
Oracle HTTP Server Diagnostic PortTCP7200
Oracle HTTP Server Jserv portTCP8007
Oracle HTTP Server Port TunnelingTCP7501
Oracle HTTP Server SSL portTCP4443
Oracle HTTP Server listen portTCP7778
Oracle HTTP Server portTCP7777
Oracle Intelligent Agent (1748)TCP1748
Oracle Intelligent Agent (1754)TCP1754
Oracle Intelligent Agent (1808)TCP1808
Oracle Intelligent Agent (1809)TCP1809
Oracle Internet Directory(SSL)TCP636
Oracle Internet Directory(SSL, 4031)TCP4031
Oracle Internet Directory(non-SSL)TCP389
Oracle Internet Directory(non-SSL, 4032)TCP4032
Oracle JDBC for Rdb Thin ServerTCP1701
Oracle NamesTCP1575
Oracle Net ListenerTCP1526
Oracle Net Listener / Enterprise Manager Repository portTCP1521
Oracle Notification Service local portTCP6100
Oracle Notification Service remote portTCP6200
Oracle Notification Service request portTCP6003
Oracle OC4J AJPTCP3301
Oracle OC4J IIOPTCP3401
Oracle OC4J IIOPS1TCP3501
Oracle OC4J IIOPS2TCP3601
Oracle OC4J JMSTCP3701
Oracle OC4J RMITCP3201
Oracle SOAP ServerTCP9998
Oracle Times Ten (15000)TCP15000
Oracle Times Ten (15002)TCP15002
Oracle Times Ten (15004)TCP15004
Oracle TimesTenTCP4662
Oracle TimesTen (4758)TCP4758
Oracle TimesTen (4759)TCP4759
Oracle TimesTen (4761)TCP4761
Oracle TimesTen (4764)TCP4764
Oracle TimesTen (4766)TCP4766
Oracle TimesTen (4767)TCP4767
Oracle XMLDB FTP PortTCP2100
Oracle XMLDB HTTP portTCP8080
Oracle-2TCP1526
Oracle9iAS Clickstream Collector AgentTCP6668
Oracle9iAS Web Cache Admin portTCP4000
Oracle9iAS Web Cache HTTP Listen(SSL) portTCP4444
Oracle9iAS Web Cache HTTP Listen(non-SSL) portTCP7779
Oracle9iAS Web Cache Invalidation portTCP4001
Oracle9iAS Web Cache Statistics portTCP4002
OracleAS Certificate Authority (OCA) - Mutual AuthenticationTCP4401
OracleAS Certificate Authority (OCA) - Server AuthenticationTCP4400
PC Anywhere (TCP)TCP5631
PC Anywhere (UDP)UDP5632
POP3TCP110
POP3_SSLTCP995
PostgreSQLTCP5432
PostgresSQLTCP5432
RDPTCP3389
RFBTCP5900-5964
RPC, DFSR (SYSVOL)TCP5722
RTSP (TCP)TCP554
RTSP (UDP)UDP554
Routing Engine serviceTCP691
SAP Admin consoleTCP20005
SAP Alert ServerTCP30011
SAP Backup ServerTCP30017
SAP Cache ServerTCP1095
SAP Central Software Deployment ManagerTCP20201
SAP CommTCP20003
SAP Content ServerTCP1090
SAP CruiserTCP30008
SAP Design Time RepositoryTCP50015
SAP DispatcherTCP3200
SAP Dispatcher Netweaver App ServerUDP3200
SAP Enqueue Repl 2TCP50116
SAP Enqueue SvrTCP3201
SAP Exchange Groupware Connector (DCOM)TCP135
SAP File AdapterTCP8230
SAP GRMG Service (Heartbeat)TCP30006
SAP Gateway Netweaver App ServerUDP3300
SAP HTTPTCP50000
SAP HTTP ServerTCP30005
SAP HTTP Server 2TCP8353
SAP HTTPSTCP50001
SAP HostControlTCP1128
SAP HostControlSTCP1129
SAP IBMTCP50000,4402
SAP ICM HTTPTCP8000
SAP IIOPTCP50007
SAP IIOP initialTCP50002
SAP IIOPSTCP50003
SAP IPC Dispatcher Mobile clientTCP4444
SAP IPC Dispatcher Mobile client 2TCP4363
SAP IPC ServerTCP9999
SAP IPC data loaderTCP4445
SAP Import MgrTCP20006
SAP Index ServerTCP30003
SAP Index Server 2TCP8351
SAP InstTCP21212,21213
SAP Inst on IBMTCP59975,59976
SAP Inter Server COmmTCP20004
SAP JDBCAdapterTCP8220
SAP JMSTCP50010
SAP JMS AdapterTCP8210
SAP JMS/JDBC/File Adapter ServerTCP8200
SAP Java DebugTCP50021
SAP Java JoinTCP50020
SAP Layout ServerTCP31596,31597,31604
SAP Layout Server 2TCP31596
SAP Layout Server Adobe InDesignTCP31603
SAP Layout Server Quark ExpressTCP31602
SAP LiveCacheTCP7200,7210,7269,7270,7575
SAP Lotus Domino - ConnectorTCP62026-62029
SAP Lotus Domino - ProxyTCP62126-62129
SAP MDM ServerTCP2000-2002
SAP Mapping ManagerTCP3909
SAP Message Server HTTPTCP8100
SAP Monitoring (GRMG)TCP8366
SAP Msg SvrTCP3600
SAP Msg Svr 2TCP3601
SAP Msg Svr HTTPTCP8101
SAP Name ServerTCP30001
SAP Name Server 2TCP8355
SAP Oracle ListenerTCP1527
SAP P4TCP50004
SAP P4 over HTTPTCP50005
SAP P4 over SSLTCP50006
SAP PAW Communication ServerTCP1099
SAP PAW Servlet EngineTCP1089
SAP Pre ProcessorTCP30002
SAP Pre Processor 2TCP8357
SAP Queue ServerTCP30004
SAP Queue Server 2TCP8352
SAP RFC ServerTCP30007
SAP RouterTCP3299
SAP SDM/SLTCP50017,50018,50019
SAP SNC secured gatewayTCP4800
SAP Start ServiceTCP50013
SAP Start Service 2TCP50014
SAP Syndicator ServiceTCP20007
SAP TelnetTCP50008
SAP UpgradeTCP4238,4239,4240,4241
SAP gateway - CPIC/RFCTCP3300
SAP gateway/replicationTCP3301
SAP network Test ProgramTCP3298
SAP printer spoolerTCP515
SIP 5060UDP5060
SIP 5061UDP5061
SMBTCP445
SMB ServerTCP445
SMB Server UDPUDP445
SMTPTCP25
SMTP_TLSTCP587
SNMPUDP161
SNMP-ReceiveUDP161
SNMP-SendUDP162
SOAPTCP9389
SQL Analysis serviceTCP2383
SQL Server Browser serviceTCP2382
SSHTCP22
Server Message Block (SMB)TCP137,138,139
Site Replication serviceTCP379
SkinnyTCP2000
Syslog (TCP)TCP514
Syslog (UDP)UDP514
Syslog-ServerTCP514
Syslog-Server-UDPUDP514
T120 (Whiteboard A43)TCP1503
TELNETTCP23
Terminal Services (TCP)TCP3389
Terminal Services (UDP)UDP3389
VMware Consolidated BackupTCP443
VMware VMotionTCP8000
VMware-CIMSLPUDP427
VMware-DVSTCP8301,8302
VMware-DataRecoveryTCP22024
VMware-ESXi5.x-TCPTCP902
VMware-ESXi5.x-UDPUDP902
VMware-HA-TCPTCP8182
VMware-HA-UDPUDP8182
VMware-SPSTCP31100,31000
VMware-SRM-H5-UITCP443
VMware-SRM-HTTPTCP9008
VMware-SRM-ReplicationTCP8123
VMware-SRM-SOAPTCP8043
VMware-SRM-Server-ManagementTCP9086
VMware-SRM-UITCP9085
VMware-SRM-VAMITCP8080
VMware-SRM-vCentreServerTCP8096
VMware-SRM-vSphereReplicationTCP31031,44046
VMware-SRMClient-ServerTCP8095
VMware-UpdateMgrTCP9000-9100
VMware-UpdateMgr-PatchingTCP735
VMware-UpdateMgr-SOAPTCP8084
VMware-UpdateMgr-VUMTCP9084
VMware-VC-DPMUDP623
VMware-VC-DumpCollector-TCPTCP8000
VMware-VC-DumpSvrUDP6500
VMware-VC-ESXiTCP51915
VMware-VC-RemoteConsoleTCP903
VMware-VC-SyslogTCP8001
VMware-VCO-CommandTCP8240
VMware-VCO-DataTCP8244
VMware-VCO-MessagingTCP8250
VMware-VCO-VCO-HTTPSTCP8283
VMware-VCO-WebHTTPTCP8280
VMware-VCO-WebHTTPSTCP8281
VMware-VCOMgr-UITCP1194
VMware-VCOStdAln-HeartbeatTCP1199
VMware-VDM2.x-EphemeralTCP1024-65535
VMware-VDM2.x-RGSTCP42966
VMware-VR-Replication-TrafficTCP31031,44046
VMware-VR-Server-Management-TrafficTCP8043
VMware-View-PCoIPTCP4172
VMware-View5.x-JMSTCP4001
VMware-View5.x-PCoIP-UDPUDP4172
VMware-iSCSI-ServerTCP3260
Vmware-FT-TCPTCP8100,8200
Vmware-FT-UDPUDP8100,8200
Vmware-Heartbeat-PrimarySecondaryTCP57348
Vmware-SRM-WSDL-vCentreServerTCP9007
Vmware-UpdateMgr-updateTCP9087
Vmware-VC-HTTPTCP10080
Vmware-VC-VC-InternalTCP7500,8005,8006,8083,8085,8086,8087,8443,10109,10111,60099
Vmware-VC-WebAccessTCP8443,9443,10443
Vmware-VCHeartbeatTCP52267
Vmware-VCO-LookupTCP8230
Vmware-VCO-VCO-HTTPTCP8282
Vmware-VCOStdAln-RemoteTCP61616
Vmware-VDM2.x-AJPTCP8009
Vmware-VDM2.x-JMSTCP4100
WINSTCP42
WINS-UDPUDP42
Win - RPC, DCOM, EPM, DRSUAPI, NetLogonR, SamR, FRS - TCPTCP1025-65535
Win - RPC, DCOM, EPM, DRSUAPI, NetLogonR, SamR, FRS - UDPUDP1025-65535
Win 2003 - RPC, DCOM, EPM, DRSUAPI, NetLogonR, SamR, FRSTCP1025-5000
Win 2008 - RPC, DCOM, EPM, DRSUAPI, NetLogonR, SamR, FRSTCP49152-65535
Windows-Global-CatalogTCP3268
Windows-Global-Catalog-over-SSLTCP3269
Yahoo Messenger (TCP)TCP5050
Yahoo Messenger (UDP)UDP5050
iSQLPlus 10gTCP5560
iSQLPlus 10g (5580)TCP5580

 

Commands to build:

(get-Content "nsservices.json"|ConvertFrom-JSON).results|?{$_.nsservice_element.resource_type -eq 'ALGTypeNSService'}|Select @{l='Display Name';e={$_.display_name}}, @{l='Triggering Port';e={$_.nsservice_element.destination_ports}} 
(get-Content "nsservices.json"|ConvertFrom-JSON).results|?{$_.nsservice_element.resource_type -eq 'L4PortSetNSService'}|Select @{l='Display Name';e={$_.display_name}},@{l='Protocol';e={$_.nsservice_element.l4_protocol}}, @{l='Port';e={[system.string]::join(',',$_.nsservice_element.destination_ports)}}
(get-Content "nsservices.json"|ConvertFrom-JSON).results|?{$_.nsservice_element.resource_type -eq 'ICMPTypeNSService'}|Select @{l='Display Name';e={$_.display_name}},@{l='Protocol';e={$_.nsservice_element.protocol}}, @{l='ICMP type';e={[system.string]::join(',',$_.nsservice_element.icmp_type)}}