The following section shows the ports that are used with Deep Discovery Director (Consolidated Mode) and why they are used.
|
Port |
Protocol |
Function |
Purpose |
|---|---|---|---|
|
22 |
TCP |
Listening and outbound |
Deep Discovery Director (Consolidated Mode) uses this port to:
|
|
25 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to send alert notifications through SMTP. |
|
53 |
TCP/UDP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port for DNS resolution. |
|
80 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) connects to other computers and integrated Trend Micro products and hosted services through this port. In particular,Deep Discovery Director (Consolidated Mode) uses this port to:
|
|
123 |
UDP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to connect to the NTP server to synchronize time. |
|
139 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to download Virtual Analyzer images from a network folder. |
|
161 |
UDP |
Listening |
Deep Discovery Director (Consolidated Mode) uses this port for SNMP agent listening and protocol translation. |
|
162 |
UDP |
Listening and Outbound |
Deep Discovery Director (Consolidated Mode) uses this port:
|
|
443 |
TCP |
Listening and outbound |
Deep Discovery Director (Consolidated Mode) uses this port to:
|
|
445 |
TCP/UDP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to download Virtual Analyzer images from a network folder. |
|
601 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to send logs to a syslog server. |
|
636 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to retrieve user information from Microsoft Active Directory. |
|
4459 |
TCP |
Listening |
Deep Discovery Director (Consolidated Mode) uses this port to access the End-User Quarantine console with a computer over HTTPS. |
|
6514 |
TCP |
Listening and Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to send logs to a syslog server over TCP with SSL encryption. |
|
8080 |
TCP |
Listening |
Deep Discovery Director (Consolidated Mode) uses this port to share threat intelligence with other products. |
|
8883 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to distribute threat intelligence data to OpenDXL clients, services, and brokers. |
|
18183 |
TCP |
Outbound |
Deep Discovery Director (Consolidated Mode) uses this port to distribute threat intelligence data to Check Point Open Platform for Security. |
