Ports required to join the AD domain and ports required for AD replication
1. How to check AD domain replication?
Run repadmin / replsum to verify AD replication
2. Which firewall ports are needed for AD domain replication?
TCP 53 (DNS)
TCP 88 (Kerberos key Distribution Center)
TCP 135 (remote procedure call)
TCP 139 (NetBIOS session Service)
TCP 389 (LDAP)
TCP 445 (SMB, network login)
TCP 464 (Kerberos password)
TCP 3268 (Global Catalog)
TCP 49152-65535 (randomly assigned high ports)
UDP 53 (DNS)
UDP 123 (NTP)
UDP 389 (LDAP)
UDP 445
UDP 464
3. Which ports are required for Windows 10 clients to join the AD domain?
TCP 88 (Kerberos key Distribution Center)
TCP 135 (remote procedure call)
TCP 139 (NetBIOS session Service)
TCP 389 (LDAP)
TCP 445 (SMB, network login)
UDP 53 (DNS)
UDP 389 (LDAP,DC locator, network login)
TCP 49152-65535 (randomly assigned high TCP ports)
4. How does Powershell test whether the port is open?
Test-NetConnection-ComputerName computer name / IP-Port port number