What ports need to be opened in order to collect event logs through a firewall?
Intrust for Events does not use any specific TCP/UDP ports. It only uses the standard Windows "copy" procedure. Below are the NetBios ports used by Windows for copying. These ports should be opened up for Intrust for Events to collect event logs:
netbios-ns 137/tcp nbname #NETBIOS Name Service
netbios-ns 137/udp nbname #NETBIOS Name Service
netbios-dgm 138/udp nbdatagram #NETBIOS Datagram Service
netbios-ssn 139/tcp nbsession #NETBIOS Session Service
SMB-over-TCP 445/tcp #Microsoft-DS (NetBIOS Helper)
© 2025 Quest Software Inc. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center