Secure Global Desktop Administration Guide > Security > What ports does Secure Global Desktop use?

What ports does Secure Global Desktop use?

This page lists the ports used by Secure Global Desktop and their purpose. It also lists the direction and protocol information needed to configure firewalls for use with Secure Global Desktop. The ports are divided into ports used for:

Ports used for connections between client devices and Secure Global Desktop servers

SourceDestinationDestination portPurpose
ClientWeb server

on the Secure Global Desktop host
80/tcpStandard, unencrypted HTTP requests and responses used to display webtops.
ClientWeb server

on the Secure Global Desktop host
443/tcpSecure, encrypted HTTPS requests and responses used to display webtops.
ClientSecure Global Desktop server3144/tcpStandard, unencrypted connections used for control and application display updates.
ClientSecure Global Desktop server5307/tcpSSL-based secure, encrypted connections to Secure Global Desktop servers which are using the Sun Secure Global Desktop Security Pack. Used for control and application display updates.

Notes

Ports used for connections between Secure Global Desktop servers

SourceDestinationDestination portPurpose
Secure Global Desktop serverAnother Secure Global Desktop server515/tcpUsed when moving print jobs from one Secure Global Desktop server to another using the tarantella print move command.
Secure Global Desktop serverAnother Secure Global Desktop server5427/tcpUsed for connections between Secure Global Desktop servers to allow array replication and sharing of both static and dynamic data across the array.

Notes

Ports used for connections between Secure Global Desktop servers and application servers

SourceDestinationDestination portPurpose
Secure Global Desktop serverApplication server22/tcpUsed to connect to X and character applications using Secure SHell (SSH).
Secure Global Desktop serverApplication server23/tcpUsed to connect to Windows, X and character applications using telnet.
Application serverSecure Global Desktop server137/udpUsed for WINS services with client drive mapping.

The server binds to this port at start-up only if WINS services are currently enabled.
Application serverSecure Global Desktop server139/tcpUsed for client drive mapping services.

The server binds to this port at start-up, whether or not client drive mapping services are currently enabled.
Secure Global Desktop serverApplication server512/tcpUsed to connect to X applications using rexec.
Application serverSecure Global Desktop server515/tcpUsed to send print jobs from the application server to a Secure Global Desktop server.
Secure Global Desktop serverApplication server3389/tcpUsed to connect to Windows applications configured to use the Microsoft RDP protocol.
Secure Global Desktop serverApplication server3579/tcpUsed for connections between the primary Secure Global Desktop server and the Secure Global Desktop load balancing service running on an application server.
Application serverSecure Global Desktop server3579/udpUsed for connections between the Secure Global Desktop load balancing service running on an application server and the primary Secure Global Desktop server.
Secure Global Desktop serverApplication server5999/tcpUsed to connect to Windows applications, if the application configured to use the Wincenter protocol and the connection method is telnet. The Wincenter protocol is no longer supported but may be used by legacy Windows application objects,
Application serverSecure Global Desktop server6010/tcp and aboveUsed to connect X applications with the protocol engines running on the Secure Global Desktop server.

Notes

Ports used for connections to authentication services and directory services

SourceDestinationDestination portPurpose
Secure Global Desktop serverWindows server88/udp or tcpUsed to authenticate users from a Windows domain.
Secure Global Desktop serverWindows server137/udpUsed to authenticate users from a Windows NT domain.
Secure Global Desktop serverWindows server139/tcpUsed to authenticate users from a Windows NT domain.
Secure Global Desktop serverLDAP directory server389/tcpUsed to authenticate users and/or provide webtop content using LDAP.
Secure Global Desktop serverWindows server464/udp or tcpUsed to allow users to change their password if it has expired.
Secure Global Desktop serverLDAP directory server636/tcpUsed to authenticate users and/or provide webtop content using SSL-based LDAP (LDAPS).
RSA SecurID/ACE Server®Secure Global Desktop server1024/udp to 65535/udpUsed to authenticate users using SecurID/ACE.
Secure Global Desktop serverWindows server3268/tcpUsed to authenticate users from a Windows domain.
Secure Global Desktop serverRSA SecurID/ACE Server5500/udpUsed to authenticate users using SecurID/ACE.

Notes

Related topics