DC/OS Ports

Understanding configured ports for DC/OS deployment

This section describes each pre-configured port in your DC/OS deployment.

DC/OS components listen on multiple ports on each node. These ports must be available for installation to succeed.

  • For DC/OS to install and function as intended, these ports must be accessible upon initial installation.
  • The ports must be open between the indicated source and destination nodes, including over cluster zones.
  • You must use appropriate network mechanisms to prevent unauthorized access to cluster nodes. Refer to the documentation on network security.

DC/OS allocates additional ports to services running on top of DC/OS. These ports are required to be available when services are installed.

All nodes

TCP

PortDC/OS Componentsystemd UnitSourceDestination
53DC/OS Netdcos-net.serviceagent/masteragent/master
61003REX-Raydcos-rexray.serviceagent/master (may change due to specific REX-Ray configuration)agent/master (may change due to specific REX-Ray configuration)
61091telegrafdcos-telegraf.serviceagent/masteragent/extra
61092fluent-bitdcos-fluent-bit.serviceagent/masteragent/extra
61420DC/OS Netdcos-net.serviceagent/masteragent/master
62080DC/OS Netdcos-net.serviceagent/masteragent/master
62501DC/OS Netdcos-net.serviceagent/masteragent/master

UDP

PortDC/OS Componentsystemd UnitSourceDestination
53DC/OS Netdcos-net.serviceagent/masteragent/master
64000DC/OS Netdcos-net.serviceagent/masteragent/master

NOTE: UDP port 123 is open for communication with NTP.

Master

TCP

PortDC/OS Componentsystemd UnitSourceDestination
80Admin Router Master (HTTP)dcos-adminrouter.servicepublic IPmaster
443Admin Router Master (HTTPS)dcos-adminrouter.servicepublic IPmaster
2181ZooKeeperdcos-exhibitor.serviceagent/mastermaster
3888ZooKeeperdcos-exhibitor.servicemastermaster
2888ZooKeeperdcos-exhibitor.servicemastermaster
5050Mesos Masterdcos-mesos-master.serviceagent/mastermaster
7070DC/OS Package Manager (Cosmos)dcos-cosmos.servicelocalhostlocalhost(master)
8080Marathondcos-marathon.serviceagent/mastermaster
8101DC/OS Identity and Access Managerdcos-bouncer.servicelocalhostlocalhost(master) Enterprise
8123Mesos DNSdcos-mesos-dns.servicelocalhostlocalhost
8181Exhibitordcos-exhibitor.serviceagent/mastermaster
8200Vaultdcos-vault.servicelocalhostlocalhost(master) Enterprise
8201Vault HAdcos-vault.servicemastermaster Enterprise
8443Marathon SSLdcos-marathon.serviceagent/mastermaster
8888DC/OS Certificate Authoritydcos-ca.servicelocalhostlocalhost(master) Enterprise
9090DC/OS Jobs (Metronome)dcos-metronome.serviceagent/mastermaster
9443DC/OS Jobs (Metronome) SSLdcos-metronome.serviceagent/mastermaster
9990DC/OS Package Manager (Cosmos)dcos-cosmos.servicelocalhostlocalhost(master)
15101Marathon libprocessdcos-marathon.servicemasteragent/master
15201DC/OS Jobs (Metronome) libprocessdcos-metronome.servicemasteragent/master
26257CockroachDBdcos-cockroach.servicemastermaster Enterprise
61053Mesos DNSdcos-mesos-net.serviceagent/mastermaster
61430DC/OS Netdcos-net.serviceagent/mastermaster Enterprise
EphemeralDC/OS Component Package Manager (Pkgpanda)dcos-pkgpanda-api.serviceNoneNone

UDP

PortDC/OS Componentsystemd UnitSourceDestination
61053Mesos DNSdcos-mesos-net.serviceagent/mastermaster

Agent

TCP

PortDC/OS Componentsystemd UnitSourceDestination
5051Mesos Agentdcos-mesos-slave.serviceagent/masteragent
61001Admin Router Agent (HTTP)dcos-adminrouter-agentagent/masteragent
61002Admin Router Agent (HTTPS)dcos-adminrouter-agentagent/masteragent
1025-2180Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent
2182-3887Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent
3889-5049Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent
5052-8079Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent
8082-8180Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent
8182-32000Default advertised port ranges (for Mesos tasks)Any Mesos taskagent/masteragent