Quantcast
Channel: Directory Services forum
Viewing all articles
Browse latest Browse all 31638

Ports required for firewall communication between DC to DC and Client to DC

$
0
0

Hi All,

I wanted to know about the exact ports which are required for communication between domain controller to domain controller and client to domain controller. I have to allow these ports through the firewall.

I have followed the technet library link and after my own testing created this list -

Client to DC Communication -

TCP/UDP 137-139NetLogon, NetBIOS Name Resolution, DFS, Group Policy, NetBIOS Datagram Service
TCP/UDP 88Kerberos
TCP/UDP 53DNS
TCP/UDP 123NTP
TCP 9389SOAP
UDP 67 & UDP 2535DHCP, MADCAP, PXE

DC to DC communication -

TCP/UDP 135RPC, EPM, MSMQ
TCP/UDP 137-139DFSN, NetBIOS Session Service, NetLogon
TCP/UDP 389LDAP
TCP 636LDAP SSL
TCP 3268LDAP GC
TCP 3269LDAP GC SSL
TCP/UDP 445SMB, CIFS, SMB2, DFSN, LSARPC, NbtSS, NetLogonR, SamR, SrvSvc
TCP 5722RPC, DFSR (SYSVOL)
TCP 9389ADWS
TCP/UDP 49152-65535, TCP/UDP 1024 - 5000RPC randomly allocated high TCP ports, DCOM
TCP 593RPC over HTTPS
TCP/UDP 464Replication, User and Computer Authentication, Trusts (Kerberos change/set password)

Does these ports looks good ?

Experts please help.

Thanks,

Neeraj.


Viewing all articles
Browse latest Browse all 31638

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>