What communication protocols and ports does Directory and Resource Administrator use? (NETIQKB3294)

  • 7703294
  • 02-Feb-2007
  • 04-Sep-2009

Environment

Directory and Resource Administrator 6.x
Directory and Resource Administrator 7.x
Directory and Resource Administrator 8.0
Directory and Resource Administrator 8.0 SP1
Directory and Resource Administrator 8.1
Directory and Resource Administrator 8.1 SP1
Directory and Resource Administrator 8.1 SP2

Situation

What communication protocols and ports does Directory and Resource Administrator use?

What communication protocols and ports does NetIQ Exchange Administrator use?

Resolution

Ports and Protocols Used by NetIQ Directory and Resource Administrator and NetIQ Exchange Administrator

Throughout this article, the protocols are referred to by name without explicitly defining the possible port range assigned. The following table identifies the protocols and the ports.

ProtocolsPorts Used
NetBios

137 UDP NetBIOS Name Server

138 UDP NetBIOS Datagram

139 TCP NetBIOS Session Services

SMB 445 TCP
DCOM RPC 135 and 1024-65535
LDAP389
Global Catalog3268

Communication between DRA Clients (CLI, ADSI, Win32, WebConsole) and the DRA Server

All communication between DRA clients and the DRA server use Distributed Component Object Model (DCOM).  DCOM uses remote procedure calls (RPC) on port 135, as well as ports in the range 1024 ? 65535.  To restrict the ports used by DCOM, refer to the following Microsoft KB article:

HOWTO: Restrict TCP/IP Ports on Windows 2000 and Windows XP (http://support.microsoft.com/default.aspx?scid=kb;en-us;300083 ).

Automatically Finding a DRA server

The DRA clients use a process called Server Discovery to find a DRA server managing a specified domain.  Server Discovery uses the following protocols:

  • DCOM
  • NetBIOS

Communication between DRA Servers in a Multi-Master Set

DRA servers in a multi-master set use the following protocols to communicate with one another:

  • DCOM
  • SMB
  • NetBIOS

Communication between DRA Server and Domain Controllers
Depending on the type of communication you initiate, DRA uses different protocols.

Active Directory Domains
Viewing or modifying information in the Active Directory uses LDAP and the Global Catalog. NetBIOS is also used for browsing the network.

NT4 Domains
Viewing or modifying information in an NT4 domain uses the NetBIOS ports.

Installing Agents on Domain Controllers
Agents are installed on domain controllers using SMB and NetBIOS.

Retrieving Last Logon Statistics from Agents
DCOM is used to retrieve last logon statistics from the agents on the domain controllers.

Communication between DRA Server and Exchange 5.5

The default communication port for Exchange 5.5 is port 389.  Port 389 is also used for LDAP communications in the Active Directory.  In environments containing both Active Directory and Exchange 5.5, Exchange must be configured to use another port.

Communication between DRA Server and Exchange 2000

The DRA server communicates with Exchange 2000 using LDAP and the Global Catalog.

Communication between DRA Server and Computer Resources

The DRA server uses the NetBIOS ports to manage computer resources. Computer resources include the following objects: shares, printers, services, and open files.

Additional Information

Formerly known as NETIQKB3294

This article applies to versions of DRA prior to 8.5 only.