Monday, December 21, 2009

List of ports when using NVW and TMCM

A customer asked, what ports to allow since he deploys two units of NVW the NVW registered to TMCM in the network.

Ports used by NVW and TMCM to communicate:

1. TCP 80 Listening/Outbound (HTTP)
2. TCP 443 Listening/Outbound (HTTPS)
3. UDP 10323 (Inbound)
4. UDP 514 Outbound (Syslog)

Ports used by NVW and protected machines to communicate:

1. TCP 20901-2 Listening & TCP 20903 Interprocess (Damage Cleanup Services). This is also used by Vulnerability Assessment

2. UDP 123 (Inbound). Port used by the Trend Micro Network Time Protocol. It is also used by Network VirusWall to synchronize time with the TMCM server.

3. UDP 10323 (Inbound). Default Heartbeat Port of TMCM for MCP-based agents. Heartbeats will indicate to the TMCM server that an agent is active.

4. 5088 - Peagent

5. 5091 - Threat management agent. You can also modify this port in NVW console > Policy enforcement > TMAgent settings.

No comments: