The following documents the ports used during Discover scans.
The ports used below are default ports.
The system administrator at the customer site should be consulted to check if any of the ports used has been modified in their environment.
NOTE: Port 8100 is the default port used by all detection servers to communicate with the enforce server.
Source |
Destination |
Protocol |
Port |
Action |
Comment |
Network Discover |
Target Server |
TCP |
445 |
Allow |
This is for CIFS shares |
Network Discover |
Target Server |
TCP |
2049 |
Allow |
This is for NFS shares |
Scanner agent* |
Network Discover |
TCP |
8090 |
Allow |
This is for the scanner agent targets (Sharepoint, Exchange, Documentum etc) |
Network Discover |
Oracle Database |
TCP |
1521 |
Allow |
This is for SQL Database - Oracle database |
Network Discover |
DB2 9.x |
TCP |
50000 |
Allow |
This is for SQL Database - IBM DB2 9.x |
Network Discover |
MS SQL Server |
TCP |
1433 |
Allow |
This is for SQL Database - MS SQL Server |
Network Discover |
Sybase |
TCP |
7100 |
Allow |
This is for SQL Database - Sybase |
Network Discover |
MySQL |
TCP |
3306 |
Allow |
This is for SQL Database - MySQL |
Network Discover |
Lotus Notes |
TCP |
63148 |
Allow |
This is when scanning LotusNotes using DIIOP |
Network Discover |
Lotus Notes |
TCP |
1352 |
Allow |
This is when scanning LotusNotes with native api |
Web Services Agent* |
Network Discover |
TCP |
8090 |
Allow |
This is for the web services agent |
For more information on configuring Network Discover servers please refer to the product documentation.
For other DLP ports please read Ports used by Symantec DLP