Endpoint Protection

 View Only
  • 1.  Port 137 139,138 on SEPM

    Posted Jun 20, 2017 10:13 AM

    Hi Team,

    Could you please confirm these ports should be opened on client end only or on SEPM or required bi directional.

    Port #137 (UDP) 
     
    Port #138 (UDP)
     
    Port #139 (TCP)

     



  • 2.  RE: Port 137 139,138 on SEPM

    Posted Jun 20, 2017 10:23 AM

    You're correct. SEPM will initiate connection with these ports on the client side when starting a remote push. The SEPM itself does not need these ports open in order to function correctly.

    Additional info for reference located here:

    http://www.symantec.com/docs/HOWTO81103



  • 3.  RE: Port 137 139,138 on SEPM

    Posted Aug 15, 2017 07:45 AM

    Hi,

    just to add info that those ports are for NetBIOS over TCP/IP, an ancient network technology that should have long time be dead but some complex environments are still using legacy applications that do not understand newer protocols. From my experience, vendors still list this as requirements because of "fear" that their product might not work in those old-complex-legacy environments. In our client networks we're not opening those ports unless there are legacy endpoints that still require that technology - that is lot less questions from firewall people now.