Communication matrix VCF 9.1
Explore the ports, protocols, and service paths between every VCF component — then filter the records behind each connection.
Filters
Refine the diagram, list, matrix, and CSV export together.
Endpoint labels are preserved exactly from the source tool. Dropdowns show snapshot record counts; endpoints are grouped by diagram component.
Environment mapping optional · stays in your browser
Map your deployment addresses once, then export a firewall request template with concrete source and destination objects. Paste a VCF 9.x installer JSON (for example the vcf-91-in-box config) to prefill hostnames, IP pools, and subnets — passwords in the pasted JSON are never read or stored — or fill components manually. Values stay in this browser only (localStorage); nothing is uploaded.
Unmapped components appear as <Component> IPs / FQDNs placeholders in the exported template.
VCF infrastructure communication paths
Select a box to draw its direct paths, then select a connected box or line to isolate it.
Select a component box, then select a connected box or line. The exact source records remain available in the connection list.
Connection records
Exact published endpoints. Expand a record for service details and provenance.
| Product / release | Source | Destination | Port / protocol | Purpose & details | Classification |
|---|
Endpoint matrix
Sources down the left, destinations across the top. Select a count to open its records.
Counts are published entries, not unique firewall rules. “—” does not mean communication is unnecessary. Reverse connections are never inferred, including entries classified as “Both”.
No matching connections. Try a broader search or reset the filters.
External internet destinations
Internet domains named by the filtered records — derived from endpoint labels and service descriptions, never inferred. Endpoint labels marked in the connection list carry a domain badge. VMware domains include legacy Lastline services (vDefend ATP cloud); VMware is a Broadcom division.
Public URL reference Broadcom KB 327186
Depot, telemetry, compatibility, and licensing URLs required for online functionality.
Source & version coverage
This snapshot includes only active, published entries explicitly assigned to releases mapped to VCF 9.1 by the official tool. Mapped patch and add-on versions are included; they are not all version 9.1. Choose a product and release for deployment-specific planning. No older-version fallback or invented connections are used.
View included products, releases, and entry counts
Diagram interpretation. The path view is an independent navigation layer inspired by the official VCF 9.1 Fleet Latency logical diagram. It groups exact endpoint labels into logical components but does not reproduce or enforce latency requirements. Lines represent records in this snapshot; they are not topology discovery, reachability tests, or inferred firewall rules. Validate latency requirements in the official diagram and current product documentation.
Planning aid, not a firewall policy. Review service descriptions and your enabled features. Validate requirements against the official Ports and Protocols tool and product documentation before making changes. Source entries can overlap; this tool does not deduplicate or infer bidirectional firewall rules.
Download the complete JSON snapshot