How can I change the Policy manager admin port from the default to another port that does not accept, external, customer data traffic.

Question asked by bsconsulting on May 18, 2017
Default installation accepts service requests and management requests on 8443 and 9443.

The default Gateway configuration listens on port 8080 for standard service requests and port 8443 for encrypted service requests over SSL. Administrative requests from the Policy Manager take place over port 8443. The browser version of the Policy Manager is accessed by either port 8443 or 9443....
If the default endpoints are changed during configuration of the Gateway, or later by the Policy Manager, the network firewalls must be reconfigured to reflect these changes.… 


I would like to isolate service requests and management requests, but I am unable to find documentation on how the default can be changed. Is there additional documentation on how to change the defaults?