Ports/Protocols Flashcards
SSH
Secure Shell
22
Secure remote access
SCP
Secure Copy Protocol
22
Secure copy to Linux/Unix
DNSSEC
DNS Secure
TCP/UDP 55
Secure DNS traffic via certificates (no encryption)
Kerberos
TCP/UDP 88
Secure authentication
SNMPv3
Simple Network Management Protocol
UDP 162
Remote monitoring/configuration of network devices
LDAPS
Lightweight Directory Access Protocol over SSL
636
Secure directory services
HTTPS
Hypertext Transport Protocol over TLS/SSL
443
Secure web browsing
HTTP
Hypertext Transport Protocol
80
TLS/SSL
Transport Layer Security/Secure Sockets Layer
443
Secure data in transit
TLS/SSL
Transport Layer Security/Secure Sockets Layer
443
Secure data in transit
IPSec
Internet Protocol Security
UDP 500
Secure VPN sessions between hosts
SMTPS
Simple Mail Transfer Protocol Secure
587
Secure SMTP (email)
IMAP4
Internet Message Access Protocol
993
Secure IMAP (email)
POP3
Post Office Protocol
995
Secure POP (email)
S/MIME
Secure/Multipurpose Internet Mail Extensions
993
Encrypt/digitally sign email
FTPS
File Transfer Protocol Secure
989/990
Download large files securely
RDP
Remote Desktop Protocol
3389
Secure remote access
SIP
Session Initiated Protocol
5060/5061
Signaling/controlling in VoIP
SRTP
Secure Real Time Protocol
5061
Encryption/message auth/integrity for VoIP audio/video
Uses AES encryption
SMTP (base)
TCP 25
DNS
Domain Name System
TCP/UDP 53
SNMP (base)
UDP 161/162
LEAP
Lightweight
Cisco proprietary alternative to TKIP (WPA)
PEAP
Protected
Encapsulates EAP within TLS tunnel
Doesn’t require client certificates
AS uses digital certificate instead of PAC
User authenticates with MSCHAPv2 or generic token card/hardware token generator