views:

2301

answers:

3

What ports do you need to open in a firewall to connect a remote Windows computer to a Microsoft Active Directory server domain behind that firewall?

+1  A: 

See this article on Active Directory Replication over Firewalls from MS Technet.

Bork Blatt
+1  A: 

TCP 135 : MS-RPC

TCP 1025 & 1026 : AD Login & replication

TCP 389 : LDAP

TCP & UDP 53 : DNS

TCP 445 : SMB , Microsoft-ds

TCP 139 : SMB

UDP 137 & 138 : NetBIOS related

UDP 88 : Kerberos v5

See: http://msmvps.com/blogs/rexiology/archive/2006/04/05/89389.aspx

Jason Stevenson
+2  A: 

I think you should be using a VPN for this rather than opening your firewal. Looking into setting up a firewall with Routing and Remote Access or with a dedicated VPN hardware solution.

BobbyShaftoe