Special Ports for Mostly Open and Mostly Closed Categories

This page contains information about ports that are treated differently than the group norm in the "Mostly Open" and "Mostly Closed" campus firewall plans.

Ports permitted with Mostly Closed (and Remote Administration)

Traffic on the following ports are permitted to enter a machine in the Mostly Closed firewall category:

Protocol name Purpose Port range
FTP File transfer 21
SSH, SFTP Secure text & file transfer 22
Telnet Text transfer 23
Mail (SMTP) Email transfer 25
HTTP Web pages 80
POP3 Email transfer 110
IMAP Email transfer 143
HTTPS Secure web pages 443
H.323 Remote access (including LDAP and other services) 389
522
1503
1719
1720
1731
Secure POP, Secure IMAP Secure email transfer 993
995

Note: Systems placed in the Mostly Closed + Remote Administration firewall group will permit the above ports plus:

Protocol name Purpose Port range
SLP Service Location Protocol 427
SSL SMTP Secure email transfer 465
NCP Netware Core Protocol 524
PPTP Point to point tunneling protocol 1723
NetAssistant Apple remote desktop 3283
RDP Windows remote desktop 3389
VNC Apple remote desktop 5900
WBEM HTTP Apple remote desktop 5988
NoRM Netware remote management 8009
Alternative HTTP Web server 8080

Ports denied with Mostly Open

Traffic on the following ports are not permitted to enter a machine in the Mostly Open firewall category:

Protocol name Purpose Port range
Mail (SMTP) Email transfer 25
DNS IP information 53
finger User information 79
HTTP Web pages 80
NNTP News 119
SNMP Network management 161
LDAP Directory services 389
LPD Printer 515
HTTPS Secure web pages 443
NFS Sun networked file sharing 2049
ICMP Network control 5813
IRC Internet chat 6660-6669