<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: MID Server Outbound Ports in ITOM forum</title>
    <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955169#M54858</link>
    <description>&lt;P&gt;Refer IP Services and Port Probes under discovery definition.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The port probes are used to trigger the classification probes and gets triggered by IP service. So if you open any port probe you can get the triggering service. if you refer to that service you will get the port required to classify that particular device.&lt;/P&gt;
&lt;P&gt;So all these ports should be opened for the shazzam port to successfully run the port scan.&lt;/P&gt;
&lt;P&gt;And here you can find the list of ports.&lt;/P&gt;
&lt;P&gt;https://docs.servicenow.com/bundle/kingston-it-operations-management/page/product/discovery/reference/r_DiscoveryPortsAndProtocols.html&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you want to filter out the ports per device class refer the Functionality Definitions and their corresponding port probes.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="find_real_file.png"&gt;&lt;img src="https://www.servicenow.com/community/image/serverpage/image-id/100160iABC639733A2B5EE2/image-size/large?v=v2&amp;amp;px=999" role="button" title="find_real_file.png" alt="find_real_file.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;For instance, if you want to discover the windows, open the the following ports.&lt;BR /&gt;135(wmi), 53(dns), 137(wins),&amp;nbsp;5,985(winrm)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope it helps &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 13 Apr 2018 11:02:22 GMT</pubDate>
    <dc:creator>Dewin Albert2</dc:creator>
    <dc:date>2018-04-13T11:02:22Z</dc:date>
    <item>
      <title>MID Server Outbound Ports</title>
      <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955168#M54857</link>
      <description>&lt;P&gt;I plan to have a few MID servers (cluster) that will handle both Discovery and Service Mapping. Our firewall team has a policy of locking down all&amp;nbsp;traffic for any systems (internal and external hosts). I would need to provide them a list of firewall exceptions, for both incoming and outgoing ports. Is there a place I can find the recommended ports required to successfully run Service Mapping &amp;amp; Discovery?&lt;/P&gt;</description>
      <pubDate>Thu, 12 Apr 2018 18:51:22 GMT</pubDate>
      <guid>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955168#M54857</guid>
      <dc:creator>HumanSky</dc:creator>
      <dc:date>2018-04-12T18:51:22Z</dc:date>
    </item>
    <item>
      <title>Re: MID Server Outbound Ports</title>
      <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955169#M54858</link>
      <description>&lt;P&gt;Refer IP Services and Port Probes under discovery definition.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The port probes are used to trigger the classification probes and gets triggered by IP service. So if you open any port probe you can get the triggering service. if you refer to that service you will get the port required to classify that particular device.&lt;/P&gt;
&lt;P&gt;So all these ports should be opened for the shazzam port to successfully run the port scan.&lt;/P&gt;
&lt;P&gt;And here you can find the list of ports.&lt;/P&gt;
&lt;P&gt;https://docs.servicenow.com/bundle/kingston-it-operations-management/page/product/discovery/reference/r_DiscoveryPortsAndProtocols.html&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you want to filter out the ports per device class refer the Functionality Definitions and their corresponding port probes.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="find_real_file.png"&gt;&lt;img src="https://www.servicenow.com/community/image/serverpage/image-id/100160iABC639733A2B5EE2/image-size/large?v=v2&amp;amp;px=999" role="button" title="find_real_file.png" alt="find_real_file.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;For instance, if you want to discover the windows, open the the following ports.&lt;BR /&gt;135(wmi), 53(dns), 137(wins),&amp;nbsp;5,985(winrm)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope it helps &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Apr 2018 11:02:22 GMT</pubDate>
      <guid>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955169#M54858</guid>
      <dc:creator>Dewin Albert2</dc:creator>
      <dc:date>2018-04-13T11:02:22Z</dc:date>
    </item>
    <item>
      <title>Re: MID Server Outbound Ports</title>
      <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955170#M54859</link>
      <description>&lt;P&gt;Thank you, this was exactly what I was looking for. For Discovery, it seems like it's pretty straight forward. However, for Service Mapping, it seems like the outbound ports (from the MID server) could be anything, especially if you have custom, home-grown applications in your environment. If I have a dedicated MID server for Service Mapping, could I make the argument to our security team that I would need ALL outbound ports to ANY host? Especially when some of our applications are moving over to the cloud as well.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Apr 2018 13:12:46 GMT</pubDate>
      <guid>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955170#M54859</guid>
      <dc:creator>HumanSky</dc:creator>
      <dc:date>2018-04-13T13:12:46Z</dc:date>
    </item>
    <item>
      <title>Re: MID Server Outbound Ports</title>
      <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955171#M54860</link>
      <description>&lt;P&gt;Found this thread when searching for how to limit ports for WMI discovery, specifically. Good information, thanks.&lt;/P&gt;
&lt;P&gt;So in a scenario where you're discovering Windows hosts in a DMZ, with the MID server in the core, it's not necessary to open all of the high ports&amp;nbsp;49152-65535? The ServiceNow documentation suggests that's necessary -- that the initial communication is over 135, but then WMI will use a random high port to complete discovery.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Mar 2020 15:00:30 GMT</pubDate>
      <guid>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955171#M54860</guid>
      <dc:creator>roy_walton</dc:creator>
      <dc:date>2020-03-19T15:00:30Z</dc:date>
    </item>
    <item>
      <title>Re: MID Server Outbound Ports</title>
      <link>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955172#M54861</link>
      <description>&lt;P&gt;Were you able to find an answer to this&amp;nbsp; ? In one of my requirements , I had to request the 49152-65535 ports open for executing power shell ,this is basically for Citrix Delivery Controller pattern, The pattern log shows that the path doesn't exists or couldn't create file and one possible cause is the ports.&lt;/P&gt;</description>
      <pubDate>Tue, 19 Jan 2021 21:18:33 GMT</pubDate>
      <guid>https://www.servicenow.com/community/itom-forum/mid-server-outbound-ports/m-p/955172#M54861</guid>
      <dc:creator>JJ1</dc:creator>
      <dc:date>2021-01-19T21:18:33Z</dc:date>
    </item>
  </channel>
</rss>

