Sec+ misc items Flashcards
What ports and protocols are used for DNS
UDP/TCP 53
Secure protocol is DNSSEC and uses TCP port 53 as UDP can not be larger than 512 bytes
DNS queries use UDP port 53
Uses digital signatures to validate signature match.
Resource Records Set (RRset) zone signing key
File Transfer Protocol (FTP) & FTPS
FTP port TCP 20 (data port) port TCP 21 (command port) FTPS TCP 21 FTPES (File tranfer protocol explicate mode. TCP 990 (implicit mode) control port TCP 989 data port
SFTP
port TCP 22 Secure Shell (SSH)
HTTP & HTTPS
HTTP TCP port 80
HTTPS TCP port 443 (uses Secure Socket Layer (SSL) or Transport Layer Security (TLS))
Internet Message Access Protocol (IMAP)
IMAPS
Incoming mail protocol
IMAP TCP 143
IMAPS TCP 993 (TLS)
Lightweight Directory Access Protocol (LDAP)
and LDAPS
UDP/TCP 389
LDAPS UDP/TCP 636-uses SSL(TLS) encryption.
Uses a digital certificate on server that is hosting directory services to set up a secure tunnel for credential exchange
Post Office Protocol (POP3)-Incoming mail protocol)
POPS
POP3-TCP 110
POP3S-TCP 995 (uses TLS)
Real-time Transport Protocol (RTP) and RTPS
RTP-UDP 16384-32767
RTPS-UDP 5004
(uses TLS tunnel for
Real-time Transport Protocol (RTP) to pass through
Session Initiation Protocol (SIP) and SIPS
SIP-Port 5060 for queries
SIPS-Port 5061 (establishes a TLS tunnel to encrypt session packets)
simple Network Management Protocol (SNMP) and SNMPv3
SNMP-stores device info in a Management Information Base (MIB).
port UDP 161 (GET requests to receive info from devices)
port UDP 162 (TRAP data-a service report that indicates problems like a port failure)
SNMPv3-
Telnet-unsecure
SSH-secure
Telnet-TCP 23 (sends info in clear or plain text)
SSH-TCP 22 (uses certificate or key based authentication)
RADIUS (Remote authentication dial-in Service)
UDP 1812 or 1645 for authentication messages
UDP 1813 or 1646 for accounting messages
TACACS+
Terminal Access Controller Access Control System
TCP 49
It is a remote authentication protocol used by CISCO that works with AAA
Keberos
Port 88 (inbound port must be open (not blocked by firewall) to work
SMTP and SMTPS
Simple Mail Transport Protocol (outgoing email protocol)
SMTP- Port 25
SMTPS- 465 (implicit mode is deprecated)-uses a secure connection before data is called implicit)
STARTTLS 587 (upgrades SMTP connection to use TLS or explicit TLS mode)