> Source: [sk103399](https://support.checkpoint.com/results/sk/sk103399)

# sk103399 - Required open TCP ports for LOM card functionality

| Property | Value |
|----------|-------|
| Solution ID | sk103399 |
| Date Created | 2014-11-17 |
| Last Modified | 2025-08-21 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server, Hardware |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, Not Version-Specific, R82.x, R82.20 |
| OS | Gaia |

## Solution

If you connect to a Lights Out Management (LOM) card through a Firewall, then the connections from the relevant Host to the LOM card's IP address and to these ports have to be allowed by that FireWall's policy. Otherwise, you will not be able to connect, and various errors will be displayed, e.g., "`Connection TimeOut" error when launching the LOM JViewer`):

|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------|
| Appliance                                                                                                                                                                                     | Description                                                                                                                                                                                                                                                                                                                                                                                                  | TCP Ports that should be open to use all LOM features              |
| **QLS250 / QLS450 / QLS650 / QLS800 / MLS200 / MLS400 6000 / 7000 / 16000 / 26000 / 28000 TE2000XN 9000 / 19000 / 29000 Smart-1 7000 / Smart-1 700**                                          | Allow all traffic on non-secure Ports (used for unencrypted traffic) and Secure Ports (used for encrypted traffic) that were configured for the services in the [Lights Out Management (LOM) HTML5-based Card Administration Guide](https://sc1.checkpoint.com/documents/Appliances/LOM_HTML5_Card_AdminGuide/Default.htm).                                                                                  | * 443                                                              |
| **5100 / 5200 / 5400 / 5600 / 5800 / 5900** **6000 / 7000 / 16000 / 26000 / 28000 13500 / 13800** **15400 / 15600** **21600 / 21700 / 21800** **23500 / 23800** **Smart-1 225 / 3050 / 3150** | ?Allow all traffic on non-secure Ports (used for unencrypted traffic) and Secure Ports (used for encrypted traffic) that were configured for the services in [5000, 13000, 15000, 21000, 23000, Smart-1 Appliances Lights Out Management (LOM) card Administration Guide](http://downloads.checkpoint.com/dc/download.htm?ID=32414) - Chapter 3 'Configuring Settings on the Appliance' - Services Settings. | * 80 * 443 * 5120 * 5122 * 5123 * 5124 * 5126 * 5127 * 7578 * 7582 |
| **21400**                                                                                                                                                                                     | Allow all traffic on non-secure Ports (used for unencrypted traffic) and Secure Ports (used for encrypted traffic) that were configured for the services in [5000, 13000, 15000, 21000, 23000, Smart-1 Appliances Lights Out Management (LOM) card Administration Guide](http://downloads.checkpoint.com/dc/download.htm?ID=32414) - Chapter 3 'LOM Management from the WebUI' - Configuring LOM network.    | * 80 * 443 * 5120 * 5123 * 7578                                    |
| **4800** **12200 / 12400 / 12600** **TE250 / TE1000**                                                                                                                                         | A list of required ports can be found in [4800, 12000, TE250, TE1000 Appliances Lights Out Management (LOM) card Administration Guide](http://supportcontent.checkpoint.com/documentation_download?ID=12676) - Chapter 1 'Check Point Lights Out Management Overview' - Connecting to Lights Out Management.                                                                                                 | * 80 * 443 * 2068 * 8195                                           |
| **Smart-1 25 / 25B / 50 / 150**                                                                                                                                                               | Allow all traffic on non-secure Ports (used for unencrypted traffic) and Secure Ports (used for encrypted traffic) that were configured for the services in [Smart-1 25 / 25B / 50 / 150 Appliances Lights Out Management (LOM) Administration Guide](http://downloads.checkpoint.com/dc/download.htm?ID=23961) - Chapter 1 'Using Lights Out Management' - Initial Login.                                   | * 80 * 443 * 5120 * 5123 * 7578                                    |

**Purpose of the ports:**

|---------------------|----------------------|
| Port                | Purpose              |
| 80                  | HTTP                 |
| 443                 | HTTPS                |
| 2xxx 5xxx 7xxx 8xxx | KVM and VirtualMedia |

**Related solutions:**

* [sk88064 - Check Point Appliances LOM Firmware versions map](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk88064)
* [sk96246 - Documentation For Check Point Appliances](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk96246)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
