2.1 - Common Network Ports Flashcards
1
Q
Port numbers
A
- Well-known port number
– Client and server need to match - Important for firewall rules - Port-based security
- A bit of rote memorization
– Becomes second nature after a while - Make sure you know port number, protocol,
and how the protocol is used
2
Q
FTP - File Transfer Protocol
A
-
tcp/20 (active mode data), tcp/21 (control)
– Transfers files between systems - Authenticates with a username and password
– Some systems use a generic/anonymous login - Full-featured functionality - List, add, delete, etc.
3
Q
SSH - Secure Shell
A
- Encrypted communication link - tcp/22
- Looks and acts the same as Telnet
4
Q
Telnet
A
- Telnet – Telecommunication Network - tcp/23
- Login to devices remotely
– Console access - In-the-clear communication
– Not the best choice for production systems
5
Q
SMTP - Simple Mail Transfer Protocol
A
- SMTP - Simple Mail Transfer Protocol
– Server to server email transfer - tcp/25 - Also used to send mail from a device to a mail server
– Commonly configured on mobile devices and email clients - Other protocols are used for clients to receive email
– IMAP, POP3
6
Q
DNS - Domain Name System
A
- Converts names to IP addresses - udp/53
– www.professormesser.com = 162.159.246.164 - These are very critical resources
– Usually multiple DNS servers are in production
7
Q
DHCP - Dynamic Host Configuration Protocol
A
- Automated configuration of IP address, subnet mask and
other options - udp/67, udp/68
– Requires a DHCP server
– Server, appliance, integrated into a SOHO router, etc. - Dynamic / pooled
– IP addresses are assigned in real-time from a pool
– Each system is given a lease and must renew at set intervals - DHCP reservation
– Addresses are assigned by MAC address in the DHCP server
– Manage addresses from one location
8
Q
HTTP and HTTPS
A
- HTTP - tcp/80
- HTTPS - tcp/443
- Hypertext Transfer Protocol
– Communication in the browser
– And by other applications - In the clear or encrypted
– Supported by nearly all web servers and clients
9
Q
POP3 / IMAP
A
- Receive emails from an email server
– Authenticate and transfer - POP3 - Post office Protocol version 3
– tcp/110
– Basic mail transfer functionality - IMAP4 - Internet Message Access Protocol v4
– tcp/143
– Includes email inbox management from multiple clients
10
Q
SMB - Server Message Block
A
- Protocol used by Microsoft Windows
– File sharing, printer sharing
– Also called CIFS (Common Internet File System) - Using NetBIOS over TCP/IP
(Network Basic Input/Output System)
– udp/137 - NetBIOS name services (nbname)
– tcp/139 - NetBIOS session service (nbsession) -
Direct over tcp/445 (NetBIOS-less)
– Direct SMB communication over TCP without
the NetBIOS transport
11
Q
SNMP - Simple Network Management Protocol
A
- Gather statistics from network devices
– Queries: udp/161
– Traps: udp/162 - v1 – The original
– Structured tables
– In-the-clear - v2 – A good step ahead
– Data type enhancements
– Bulk transfers
– Still in-the-clear - v3 – A secure standard
– Message integrity
– Authentication
– Encryption
12
Q
LDAP
A
- LDAP (Lightweight Directory Access Protocol) - tcp/389
- Store and retrieve information in a network directory
– Commonly used in Microsoft Active Directory
13
Q
RDP - Remote Desktop Protocol
A
- Share a desktop from a remote location over tcp/3389
- Remote Desktop Services on many Windows versions
- Can connect to an entire desktop or just an application
- Clients for Windows, macOS, Linux, Unix, iPhone,
Android, and others