Network Requirements
4 min
this document covers detailed specifications of network requirements within a customer's organisation outbound network requirements the activate server and its service account require outbound network connectivity to specific microsoft and activate endpoints these connections are used for authentication, integration with microsoft 365 services, and communication with activate cloud components ensure the following urls are accessible from the activate server login microsoftonline com graph microsoft com outlook office365 com graph windows net activateiam com firewall or proxy rules must allow outbound https (tcp 443) traffic to these endpoints group policy changes the activate web portal server name url(s) have been added to the internet options security settings for the local intranet in group policy if required web proxy settings may have to be updated for the activate web portal server name url(s) if required firewall rules and ports activate requires network connectivity between the activate server and all systems it is intended to manage — including domain controllers, exchange servers, file and print servers, and any other relevant services a review of existing firewall configurations is strongly recommended to determine whether any new or modified rules are required to support this connectivity the activate orchestrator is the component responsible for processing activate tasks it communicates with various systems depending on the activate products being deployed — such as active directory, exchange server, microsoft sql server, file and print servers, and other customer specific infrastructure activate uses microsoft net to communicate with microsoft services such as active directory to manage active directory accounts and other resources the following ports below may be required to be opened if you have firewalls between the activate server and other systems depending on the modules you are deploying, this traffic must be stateful port name port number type service smtp 25 tcp email routing for notifications dns 53 tcp & udp dns for active directory kerberos 88 tcp & udp active directory netbios & smb 135 tcp & udp microsoft domain netbios & smb 137 tcp & udp netbios name resolution netbios & smb 138 tcp & udp microsoft domain netbios & smb 139 tcp & udp user and computer authentication, replication ldap – standard 389 tcp & udp ldap for active directory https 443 tcp & udp web portal and activate anywhere netbios & smb 445 tcp & udp file server access to manage ntfs kerberos 464 tcp & udp active directory sql 1433 tcp microsoft sql access ldap – global catalog 3268 tcp & udp active directory ldap – global catalog (ssl) 3269 tcp & udp active directory – if required remote admin / powershell 5985 tcp & udp on premise exchange remote admin / powershell (ssl) 5986 tcp & udp on premise exchange office 365 80/443 tcp exchange online and office 365 user management activate cloud services 80/443 tcp activate support smtp relay activate sends notifications via email out of the box, activate requires a smtp server to relay emails through for these notifications before installing activate, you must have the smtp server configured so that the activate server(s) can relay email through it