Configuracion puertos y reglas firewall Mac OS X Server

juker12

Activo
Hola

A raiz de un post del colega patton y activar el firewall der Mac OS X Server en la version Tiger
creo que es interesante conocer los puertos que se usan habitualmente en redes macintosh.

Puerto TCP o UDP Servicio o nombre Protocolo RFC

7 TCP/UDP echo 792 -
20 TCP File Transport Protocol (FTP) 959 -
21 TCP FTP control 959 -
22 TCP Secure Shell (SSH) - -
23 TCP Telnet 854 -
25 TCP Simple Mail Transport Protocol (SMTP) 821

Mail

53 TCP/UDP Domain Name System (DNS) 1034 MacDNS
67 UDP Bootstrap Protocol Server (BootP, bootps) - NetBoot via DHCP
68 UDP Bootstrap Protocol Client (bootpc) 951 NetBoot via DHCP
69 UDP Trivial File Transfer Protocol (TFTP) 1350 -
79 TCP Finger 1288 -
80 TCP Hypertext Transfer Protocol (HTTP) 2068 World Wide Web, .Mac, Sherlock, QuickTime Installer, iTunes Store and Radio, Software Update, RAID Admin, Backup, iCal calendar publishing, iPhoto HomePage publishing, WebDAV (iDisk)
88 TCP Kerberos 1510 -
106 TCP Password Server

Mac OS X Server Password Server
110 TCP Post Office Protocol (POP3)

Autentificacion Post Office Protocol (APOP) 1081 Mail (para recibir); .Mac Mail (POP)

111 TCP/UDP Remote Procedure Call (RPC) 1057, 1831 Portmap (sunrpc)
113 TCP Authentication Service 931 -
115 TCP Secure File Transfer Program (SFTP) - Note: Some authorities reference a "Simple File Transport Protocol" or "Secured File Transport Protocol" on this port.
119 TCP Network News Transfer Protocol (NNTP) 977 Used by applications that read newsgroups.
123 TCP/UDP Network Time Protocol (NTP) 1119 Date & Time preferences. Used for network time server synchronization.
137 UDP Windows Internet Naming Service (WINS) - -
138 UDP NETBIOS Datagram Service - Windows Datagram Service, Windows Network Neighborhood
139 TCP Server Message Block (SMB) 100 Used by Microsoft Windows file and print services, such as Windows Sharing in Mac OS X.
143 TCP Internet Message Access Protocol (IMAP) 2060 Mail (for receiving email); .Mac Mail (IMAP)
161 UDP Simple Network Management Protocol (SNMP) 1157 -
192 UDP - - AirPort Base Station PPP status or discovery (certain configurations), AirPort Admin Utility, AirPort Express Assistant
311 TCP Server Admin - Remote server administration
389 TCP Lightweight Directory Access Protocol (LDAP) 1777 Used by applications that look up addresses, such as Mail and Address Book.
427 TCP/UDP Service Location Protocol (SLP) 2608 Network Browser
443 TCP Secure Sockets Layer (SSL, or "HTTPS") - Secured websites, iTunes Store, iPhoto HomePage publishing; .Mac (authentication and .Mac Sync)
445 TCP Microsoft SMB Domain Server - -
497 TCP/UDP Dantz Retrospect - -
500 UDP ISAKMP/IKE - Mac OS X Server VPN service
514 TCP shell - -
514 UDP Syslog - -
515 TCP Line Printer (LPR), Line Printer Daemon (LPD) 1179 Used for printing to a network printer, Printer Sharing in Mac OS X.
532 TCP netnews - -
548 TCP Apple Filing Protcol (AFP) over TCP - AppleShare, Personal File Sharing, Apple File Service
554 TCP/UDP Real Time Streaming Protocol (RTSP) 2326 QuickTime Streaming Server (QTSS), streaming media players
587 TCP Authenticated SMTP, RFC - Mail (for sending mail), .Mac Mail (SMTP authentication)

600-1023 TCP/UDP Mac OS X RPC-based services - Used by NetInfo, for example.
623 UDP Lights-Out-Monitoring - Used by Intel Xserves' Lights-Out-Monitoring (LOM) feature; used by Server Monitor
625 TCP Directory Service Proxy (DSProxy)

DirectoryService, Open Directory Assistant, Workgroup Manager

626 TCP Mac OS X Server Serial Number Support - -
626 TCP AppleShare Imap Admin (ASIA) - IMAP Administration (Mac OS X Server 10.2.8 or earlier, AppleShare IP 6)
626 UDP serialnumberd

Server serial number registration (Mac OS X Server 10.3 y superior)

631 TCP Internet Printing Protocol (IPP) 2910 Mac OS X Printer Sharing
636 TCP Secure LDAP - -
660 TCP MacOS Server Admin - Server Admin (both AppleShare IP and Mac OS X Server), Server Settings
687 TCP Add server Admin to uses - -
749 TCP/UDP Kerberos 5 admin/changepw - -
985 TCP NetInfo Static Port - -
993 TCP Mail IMAP SSL - .Mac Mail (SSL IMAP)
995 TCP/UDP Mail POP SSL - .Mac Mail (SSL POP)
1085 TCP/UDP WebObjects - -
1099 & 8043 TCP Remote RMI and IIOP Acess to JBOSS - -
1220 TCP QT Server Admin - Used for administration of QuickTime Streaming Server.
1649 TCP IP Failover - -
1701 UDP L2TP - Mac OS X Server VPN service
1723 TCP PPTP - Mac OS X Server VPN service
2049 TCP/UDP Network File System (NFS) 1094 -
2236 TCP Macintosh Manager

Macintosh Manager

3004 TCP iSync - -
3031 TCP/UDP Remote AppleEvents - Program Linking, Remote Apple Events
3283 TCP/UDP Net Assistant - Apple Remote Desktop 2.0 or later (Reporting feature)
3306 TCP MySQL - -
3632 TCP Distributed compiler - -
3659 TCP/UDP Simple Authentication and Security Layer (SASL) - Mac OS X Server Password Server
3689 TCP Digital Audio Access Protocol (DAAP) - iTunes Music Sharing
4111 TCP XGrid - -
4500 UDP IKE NAT Traversal - Mac OS X Server VPN servicio

Volvet My Mac (.Mac, Mac OS X 10.5)

5003 TCP FileMaker - name binding and transport - -
5009 TCP (Unregistered Use) - AirPort Admin Utility, AirPort Express Assistant
5060 UDP Session Initiation Protocol (SIP) 2543 iChat AV
5100 TCP - - Mac OS X camera and scanner sharing
5190 TCP/UDP America Online (AOL) - iChat and AOL Instant Messenger, file transfer
5222 TCP Jabber

iChat y mensajeria Jabber

5223 TCP iChat server SSL - -
5269 TCP iChat server-to-server communication - -
5297 TCP - - iChat (local traffic), Bonjour
5298 TCP/UDP - - iChat (local traffic), Bonjour
5353 UDP Multicast DNS (MDNS) - Bonjour (mDNSResponder)
5354 TCP Multicast DNS Responder - Back to My Mac
5432 TCP ARD 2.0 Database - -
5678 UDP SNATMAP server - The SNATMAP service on port 5678 is used to determine the external Internet address of hosts so that connections between iChat users can properly function behind network address translation (NAT). The SNATMAP service simply communicates to clients the Internet address that connected to it. This service runs on an Apple server, but does not send personal information to Apple. When certain iChat AV features are used, this service will be contacted. Blocking this service may cause issues with iChat AV connections with hosts on networks that use NAT.
5897-5898 UDP (Unregistered Use) - xrdiags
5900 TCP Virtual Network Computing (VNC)

Apple Remote Desktop 2.0 or later (Observe/Control feature)

Screen Sharing (Mac OS X 10.5 or later)
5988 TCP WBEM HTTP - Apple Remote Desktop 2.x (see
Entrar or Registrarse para completar la lectura
)
6970-9999 UDP - - QuickTime Streaming Server
7070 TCP RTSP (Unregistered Use)
Automatic Router Configuration Protocol (ARCP - Registered Use) - QuickTime Streaming Server (RTSP)
7070 UDP RTSP alternate - QuickTime Streaming Server
7777 TCP iChat server file transfer proxy - -
8005 TCP Tomcat remote shutdown - -
8080 TCP Alternate port for Apache - -
8000-8999 TCP - - Web service, iTunes Radio streams
9006 & 8080 & 8443 - HTTP and HTTPS ports for Tomcat Standalone and JBOSS (J2EE) - -
16080 TCP - - Web service with performance cache
16384-16403 UDP Real-Time Transport Protocol (RTP), Real-Time Control Protocol (RTCP) - iChat AV (Audio RTP, RTCP; Video RTP, RTCP)
24000-24999 TCP - - Web service with performance cache
42000-42999 TCP - - iTunes Radio streams
50003 - FileMaker server service - -
50006 - FileMaker helper service - -
 
Arriba