Port 445 And Trust Creation

| | No TrackBacks
TCP port 445 (Windows standard SMB port) is used to create trust between two domains. It must be open on both sides to do that.

By itself, keeping port open is a possible security breach. The port may be exploited by a number of worms and so on, this is why it's usually kept strictly firewalled, only the trusted computers may access it.

However, after the trust has been created, the port may be safely closed, even between the two domain controllers. This is an not well-documented feature, yet it may be used to strengthen security.

No TrackBacks

TrackBack URL: /blog/mt-tb.cgi/29

blog comments powered by Disqus

About this Entry

This page contains a single entry by Konstantin Boyandin published on December 11, 2009 9:35 AM.

Enforcing Group Policy was the previous entry in this blog.

Enabling Windows Firewall On Domain Controllers is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.