Port Requirements

When deploying KubeSphere in VM, certain ports on your nodes must be open to allow communication with KubeSphere.

Suggest you to disable and stop the firewall, instead, if your network configuration uses an firewall,you must ensure infrastructure components can communicate with each other through specific ports that act as communication endpoints for certain processes or services. The following diagram depicts the ports that should be opened before installation.

ServiceProtocolActionStart PortEnd PortComment
sshTCPallow22
etcdTCPallow23792380
apiserverTCPallow6443
calicoTCPallow90999100
bgpTCPallow179
nodeportTCPallow3000032767
masterTCPallow1025010258
dnsTCPallow53
dnsUDPallow53
local-registryTCPallow5000Offline environment
local-aptTCPallow5080Offline environment
rpcbindTCPallow111When using NFS as storage server
ipipIPIPallowCalico needs to allow the ipip protocol