Skip to main content

Protocols and Ports Required for Monitoring File Servers

Review a full list of protocols and ports required for Netwrix 1Secure for File Servers.

  • Allow outbound connections from the dynamic (1024 - 65535) local port on the computer where Netwrix Cloud Agent resides.
  • Allow outbound connections to remote ports on the source and inbound connections to local ports on the target.

Tip for reading the table: For example, on the computer where Netwrix Cloud Agent resides (source), allow outbound connections to remote 389 TCP port. On domain controllers in your domain (target), allow inbound connections to local 389 TCP port.

PortProtocolSourceTargetApplication protocol
389TCP/UDPNetwrix Cloud AgentDomain ControllersLDAP DC query Account resolve
135 + Dynamic: 1024 -65535TCPNetwrix Cloud AgentMonitored computerWindows Management Instrumentation Firewall configuration Core Service communication
135TCPNetwrix Cloud AgentMonitored computerService Control Manager Remote Protocol Core Service installation
137UDPNetwrix Cloud AgentMonitored computerFile and Printer Sharing (NetBIOS Name Resolution)
138UDPNetwrix Cloud AgentMonitored computerFile and Printer Sharing (NetBIOS Datagram Service)
139TCPNetwrix Cloud AgentMonitored computerFile and Printer Sharing (NetBIOS Session Service)
445 + 139TCPNetwrix Cloud AgentMonitored computerSMB 2.0/3.0
3268TCPNetwrix Cloud AgentDomain controllersLDAP Group membership GC search