This article explains the sequence of steps that occur when a Service Portal user initiates a secure session to a target virtual machine using Commander VM Access Proxy. It also specifies the port requirements involved in establishing these connections successfully.

- Ensure the Service Portal on the Commander application server is published through the firewall on TCP port 443.
- When a user requests a secure VM connection through the Service Portal:
- Commander sends the user’s browser a token identifying the request and the VM Access Proxy URL configured in Commander.
- The user’s browser creates a session to the VM Access Proxy, published through the firewall on TCP ports 443 and 8443.
- The VM Access Proxy then contacts Commander on TCP port 443 with the token and requests session details. Commander responds with the VM’s address and the protocol to use.
- Based on the protocol, the following occurs:
- RDP: The VM Access Proxy establishes the session to the cloud account and creates an in-browser RDP session over TCP port 8443 between the VM Access Proxy and the browser.
- SSH: The VM Access Proxy establishes the session to the guest operating system and creates an in-browser SSH session over TCP port 8443 between the VM Access Proxy and the browser.
- VNC: The VM Access Proxy establishes the session to the cloud account and creates an in-browser VNC session over TCP port 8443 between the VM Access Proxy and the browser.
- VMware console: The VM Access Proxy proxies the session between the cloud account (vCenter server) and the browser over TCP port 443.
- SCVMM console: The VM Access Proxy proxies the session between the cloud account (Hyper-V server) and the browser over TCP port 8443.
- Confirm the required network routes:
- For all connection scenarios, routes must exist between Commander and the VM Access Proxy.
- For vCenter and SCVMM, routes must exist between Commander, the VM Access Proxy, and the host (Hyper-V or ESXi).
- For RDP, SSH, and VNC, routes must exist between Commander, the VM Access Proxy, and the target VM.
- Configure DNS properly if users access VMs both inside and outside the cloud network:
- Internal DNS responses should return private addresses for internal requests.
- External DNS responses should return public addresses for external requests.
Outcome
Following these steps ensures secure, browser-based connectivity for VMs through Commander VM Access Proxy, supporting multiple protocols with appropriate firewall and DNS configurations.
Was this helpful?
Related Articles
VM access proxy installation in Snow Commander 14Number of Views Supplementary Steps for Upgrading to Commander VM Access Proxy 3.8 10Number of Views Enable CD/DVD media attachment for VMs in the Snow Commander Service Portal 4Number of Views VM Access Proxy console connection fails due to a recent Broadcom update for hostd service 8Number of Views Generate and install an SSL certificate for the VM Access Proxy 15Number of Views
Revenera Assistant
Online
Hi, I am Reva - Ask me anything.
Updates
No new updates
Chat
Home
Updates
/**/
Thanks for the feedback!
Your feedback has been saved.Rate this response:
1
2
3
4
5
Add Additional feedback ( Optional )
0/240
English
English
Language changed successfully
Something went wrong
Email sent successfully
Something went wrong
Case create successfully
Are you sure you want to cancel
the case creation?
Please select a product to submit the case.
Please select a product version to submit the case.
0/255
Upload Attachment
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to cancel the case creation?
Case closed successfully
File Upload
Maximum file size allowed is 3 MB.
File type not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
File Upload
Maximum file
size allowed is 3 MB.
File type
not supported.
Supported file types:
Documents (.txt, .doc, .docx, .pdf), Images (.jpg, .png), Comma Separated Files
(.csv) Speadsheets (.xlsx, .xls)
Revenera Assistant
© 2026 Flexera Software. All Rights Reserved.
Case id: 00001065
Activity: Status change: 2 hours ago