Deployment Guide

Name Default
Port
Description
and
STOMP/
61613
(closed or,
if
configured
for DMZ,
61613 is
open)
Compatibility Server for Policy Proxy
queuing.
NOTE: Port 61616 should be
filtered through a firewall. Dell
recommends this port be internal
only.
NOTE: Port 61613 should only be
opened to Security Management
Servers configured in Front-End
mode.
Identity Server 8445
(closed)
Handles domain authentication
requests, including authentication for
SED Management.
Forensic Server HTTPS/
8448
Allows administrators that have
appropriate privileges to get encryption
keys from the Management Console for
use in data unlocks or decryption tasks.
Required for Forensic API.
Inventory Server 8887 Processes the inventory queue.
Policy Proxy TCP/
8000
Provides a network-based
communication path to deliver security
policy updates and inventory updates.
Required for Encryption Enterprise
(Windows and Mac)
PostGres TCP/
5432
Local database used for eventing data.
NOTE: Port 5432 should be filtered
through a firewall. Dell recommends
this port be internal only.
LDAP 389/636,
3268/
3269
RPC - 135,
49125+
Port 389 - This port is used for
requesting information from the local
domain controller. LDAP requests sent
to port 389 can be used to search
for objects only within the global
catalog's home domain. However, the
requesting application can obtain all of
the attributes for those objects. For
example, a request to port 389 could
be used to obtain a user's department.
Port 3268 - This port is used for
queries specifically targeted for the
global catalog. LDAP requests sent
to port 3268 can be used to search
for objects in the entire forest.
However, only the attributes marked
for replication to the global catalog
can be returned. For example, a user's
department could not be returned
using port 3268 since this attribute is
not replicated to the global catalog.
18 Architecture