What ports need to be open for SCCM?
Required SCCM Firewall Ports
- 67 UDP. PXE Distribution Point.
- 68 UDP. PXE Distribution Point.
- 69 UDP. PXE Distribution Point.
- 80 TCP. Distribution Point, Fallback Status Point, Management point,
- 443 TCP. Distribution Point, Management point (secure)
- 4011 UDP. PXE Distribution Point.
- 8530 TCP. Software Update Point.
- 8531 TCP.
What ports does Microsoft SCCM use?
Ports you can configure By default, the HTTP port that’s used for client-to-site system communication is port 80, and 443 for HTTPS. You can change these ports during setup or in the site properties.
Does SCCM use port 445?
#1) SMB traffic on TCP 445 is a requirement for the SCCM Primary to communicate with the SCCM Secondary site server.
Which TCP port does the endpoint use to get policies?
HTTPS (TCP/443) is used for sending events, for SmartEvent Views and Reports, from the Endpoint Policy Server to Primary Management. Endpoint Policy Server distribute and reduce the load of client-server communication between the clients and the Endpoint Security Management Server.
Is it possible to customize the communication port for InTune?
Most of the Intune communications are via standard http/https (80 & 443 ports), and there is no option to customize that communication. However, SCCM allows having custom ports for many communications. CMG, CDP, and Intune communications are NOT possible via custom ports.
Can I have custom ports in SCCM?
However, SCCM allows having custom ports for many communications. CMG, CDP, and Intune communications are NOT possible via custom ports. However, some of the following communications are possible only via predefined ports.
How do co-managed devices connect to InTune/SCCM?
Co-managed devices connect either to the corporate network (LAN) or internet to get the policies and deployments from both Intune/SCCM. When the co-managed devices connect to corporate LAN then, you may need to have some proxy exception to connect to the internet.
What are the network requirements for the Intune connector?
The connector has the same network requirements as managed devices. The proxy server must support both HTTP (80) and HTTPS (443) because Intune clients use both protocols. Windows Information Protection uses port 444.