1. Active Directory Ports

Active Directory relies on a wide set of ports to support authentication, directory lookups, group policy processing, replication, and Windows domain communication. This dataset outlines the essential ports used by Kerberos, LDAP/LDAPS, DNS, SMB, RPC, and Global Catalog operations—forming the backbone of any Windows enterprise environment.

This reference is invaluable for engineers designing hybrid identity solutions, troubleshooting authentication issues, securing domain controllers, or building firewall rules for segmented networks. Understanding these ports is critical for secure and reliable AD operations across cloud, LAN, VPN, and remote access architectures.

PortProtocolServiceDescription
53TCP/UDPDNSDomain Name System for AD name resolution
88TCP/UDPKerberosAuthentication for AD
135TCPRPC Endpoint MapperUsed by many AD operations
137UDPNetBIOS-NSLegacy name service
138UDPNetBIOS-DGMNetBIOS datagram service
139TCPNetBIOS-SSNLegacy SMB over NetBIOS
389TCP/UDPLDAPDirectory services queries
445TCPSMBFile sharing, Group Policy, SYSVOL
464TCP/UDPKerberos Change/Set PasswordPassword operations
636TCPLDAPSLDAP over SSL
3268TCPGlobal CatalogForest-wide searches
3269TCPGlobal Catalog SSLSecure forest-wide searches
9389TCPAD DS Web ServicesUsed for PowerShell & remote mgmt

Sales Engineer Cloud

Sales Engineer Cloud is in Beta

We’re opening early access to professionals who want hands-on tools, structured learning, and real certifications — and who are comfortable helping shape the platform as it evolves.

This is a participatory Beta program with discounted access and real influence on what gets built next.

Feedback is required as part of the Beta program.