Setup Guide
Table 8. Appliance network ports related to file (continued)
Port Service Protocol Access Direction Description
enabled, this port is open. It is specifically
required for SMB v1.
389 LDAP TCP/UDP Outbound Unsecure LDAP queries. If closed,
Unsecure LDAP authentication queries will
be unavailable. Secure LDAP is
configurable as an alternative.
445 Microsoft SMB TCP Inbound SMB (on domain controller) and SMB
connectivity port for Windows 2000 and
later clients. Clients with legitimate
access to the appliance SMB services
must have network connectivity to the
port for continued operation. Disabling
this port disables all SMB related services.
If port 139 is also disabled, SMB file
sharing is disabled.
464 Kerberos TCP/UDP Outbound Required for Kerberos authentication
services and SMB.
500 IPsec (IKEv2) UDP Bi-directional To make IPSec work through your
firewalls, open UDP port 500 and permit
IP protocol numbers 50 and 51 on both
inbound and outbound firewall filters. UDP
Port 500 should be opened to allow
Internet Security Association and Key
Management Protocol (ISAKMP) traffic
to be forwarded through your firewalls. IP
protocol ID 50 should be set to allow
IPSec Encapsulating Security Protocol
(ESP) traffic to be forwarded. IP protocol
ID 51 should be set to allow
Authentication Header (AH) traffic to be
forwarded. If closed, IPsec connection
between PowerStore appliances will be
unavailable.
636 LDAPS TCP/UDP Outbound Secure LDAP queries. If closed, secure
LDAP authentication will be unavailable.
1234 NFS mountd TCP/UDP Bi-directional Used for the mount service, which is a
core component of the NFS service
(versions 2, 3, and 4).
2000 SSHD TCP Inbound SSHD for serviceability (optional)
2049 NFS I/O TCP/UDP Bi-directional Used to provide NFS services.
3268 LDAP UDP Outbound Unsecure LDAP queries. If closed,
Unsecure LDAP authentication queries will
be unavailable.
3269 LDAPS UDP Outbound Secure LDAP queries. If closed, Secure
LDAP authentication queries will be
unavailable.
4000 STATD for NFSv3 TCP/UDP Bi-directional Used to provide NFS statd services. statd
is the NFS file-locking status monitor and
works in conjunction with lockd to provide
crash and recovery functions for NFS. If
closed, NAS statd services will be
unavailable.
Port Usage 25