Use these settings to configure your firewall and connected products.
Use the table below to configure your ports to allow Deep Discovery Inspector to connect
with Network Security and share data with other Trend Vision One services such as Workbench
and Suspicious Object Management.
For a full list of all FQDNs and firewall exceptions for Trend Vision One, see Firewall exception requirements for Trend Vision One.
NoteSome ports are configurable for their purpose. A purpose notated with (configurable)
can
be configured to use a different port in the Deep Discovery Inspector management console.
The default ports are listed in the table.
|
Listening Ports
Port
|
Protocol
|
Purpose
|
22
|
TCP
|
Connection port for preconfiguration console, as well as sending logs and data to
the Threat Management Services Portal if the appliance is registered over SSH
|
68
|
UDP
|
Receive DHCP server responses
|
80
|
TCP
|
Threat intelligence information sharing with other Trend Micro products
|
161
|
UDP
|
SNMP agent listening and protocol translation
|
443
|
TCP
|
Management console access through HTTPS
|
8080
|
TCP
|
Share threat intelligence with other products (configurable)
|
Outbound Ports
Port | Purpose | |||
25
|
TCP
|
Send notifications and scheduled reports through SMTP
|
||
53
|
TCP/UDP
|
DNS resolution
|
||
67
|
UDP
|
Requests to DHCP server if IP addresses are assigned dynamically
|
||
80
|
TCP
|
Communication with ActiveUpdate server to update components
Also supports communication with Apex Central if the appliance is registered over
HTTP.
|
||
123
|
UDP
|
Connection to NTP server for time synchronization (default NTP server:
pool.ntp.org ) |
||
137
|
UDP
|
IP address to host name resolution through NetBIOS
|
||
162
|
UDP
|
Send SNMP trap notifications
|
||
389
|
TCP/UDP
|
Retrieve user information from LDAP servers (configurable)
|
||
443
|
TCP
|
Used for the following purposes:
|
||
465
|
TCP
|
Send notifications and scheduled reports through SMTP over TCP with SSL/TLS encryption
|
||
514
|
UDP
|
Send logs to syslog server over UDP (configurable)
|
||
587
|
TCP
|
Send notifications and scheduled reports through SMTP over TCP with STARTTLS encryption
|
||
601
|
TCP
|
Send logs to a syslog server (configurable)
|
||
636
|
UDP
|
Retrieve user information from LDAP servers (configurable)
|
||
3268
|
TCP
|
Retrieve user information from LDAP servers
|
||
3269
|
TCP
|
Retrieve user information from LDAP servers
|
||
4343
|
TCP
|
Communicate with Smart Protection Server
|
||
5275
|
TCP
|
Query Web Reputation Services through Smart Protection Server using HTTPS, or
Service Gateway Smart Protection Server using HTTPS
|
||
6514
|
TCP
|
Send logs to a syslog server over TCP with SSL encryption (configurable)
|
||
8514
|
UDP
|
Send information to Deep Discovery Advisor if appliance is integrated with Deep
Discovery Advisor (configurable)
|