Port Ranges
- 0 - 1,023 are the "Well-known ports" assigned by IANA.
- 1,024 - 49,151 are "Registered" ports; used by ordinary user processes or programs executed by ordinary users. IANA does not assign these ports, but registers use of them as a convenience for the TCP/IP community.
- 49,152 - 65,535 are free for dynamic/custom use.
Link to IANA's list of well-known port numbers
IANA Home Page
Download Microsoft's paper on TCP/IP in Windows 2000 (offers a Word document)
| Protocol |
Port |
Used for |
Notes |
Preferred |
| TCP |
20 |
FTP Data Channel |
|
Blocked |
| TCP |
21 |
FTP Control Channel |
|
Blocked |
| TCP |
23 |
Telnet |
|
Blocked |
| TCP |
25 |
SMTP |
|
Allowed |
| TCP, UDP |
37 |
Time |
|
|
| TCP |
43 |
Who is |
|
|
| TCP, UDP |
53 |
DNS |
|
|
| UDP |
67 |
DHCPS (Server) |
|
|
| UDP |
68 |
DHCPC (Client) |
|
|
| TCP |
80 |
HTTP |
|
Allowed |
| TCP, UDP |
88 |
Kerberos |
|
|
| TCP |
101 |
NIC Host Name Server |
|
|
| TCP |
110 |
POP3 |
|
|
| TCP |
119 |
NNTP |
Network News Transfer Protocol |
Blocked |
| TCP, UDP |
137 |
NETBIOS Name Service |
|
|
| UDP |
138 |
NETBIOS Datagram Service |
|
|
| TCP |
139 |
NETBIOS Session Service |
|
|
| UDP |
161 |
SNMP |
Simple Network Management Protocol |
Blocked |
| UDP |
162 |
SNMP Trap |
|
|
| TCP |
194 |
IRC |
Internet Relay Chat Protocol |
Blocked |
| TCP, UDP |
443 |
HTTPS |
Network News Transfer Protocol over TLS/SSL |
Allowed |
| TCP, UDP |
464 |
Kerberos V5 |
|
|
| UDP |
525 |
Time server |
|
|
| TCP |
543 |
Kerberos |
|
|
| TCP |
544 |
Kerberos |
|
|
|
563 |
NNTPS |
Not used in Windows |
Blocked |
| TCP, UDP |
1433 |
Default port for MS SQL Server |
Reconfigure |
Blocked |
| TCP, UDP |
1434 |
Microsoft SQL Monitor |
|
|
| TCP, UDP |
1512 |
WINS |
Microsoft Windows Internet Name Service |
|
| TCP |
2053 |
knetd |
Kerberos de-multiplexor |
|
|
3389 |
Windows Terminal Services |
|
|
Notes
- pcAnywhere ports should be reconfigured
Some of the RFC's Used by Microsoft's TCP/IP implementation in Windows 2000
- 792 Internet Control Message Protocol (ICMP)
- 826 Address Resolution Protocol (ARP)
- 854 Telnet Protocol (TELNET)
- 862 Echo Protocol (ECHO)
- 863 Discard Protocol (DISCARD)
- 867 Daytime Protocol (DAYTIME)
- 894 IP over Ethernet
- 919, 922 IP Broadcast Datagrams (broadcasting with subnets)
- 950 Internet Standard Subnetting Procedure
- 1001, 1002 NetBIOS Service Protocols
- 1065, 1035, 1123, 1886 Domain Name System (DNS)
- 1112 Internet Group Management Protocol (IGMP)
- 1122, 1123 Host Requirements (communications and applications)
- 1144 Compressing TCP/IP Headers for Low-Speed Serial Links
- 1157 Simple Network Management Protocol (SNMP)
- 1188 IP over FDDI
- 1191 Path MTU Discovery
- 1201 IP over ARCNET
- 1256 ICMP Router Discovery Messages
- 1323 TCP Extensions for High Performance (see the TCP1323opts registry parameter)
- 1332 PPP Internet Protocol Control Protocol (IPCP)
- 1518 Architecture for IP Address Allocation with CIDR
- 1519 Classless Inter-Domain Routing (CIDR): An Address Assignment and Aggregation Strategy
- 1534 Interoperation Between DHCP and BOOTP
- 1542 Clarifications and Extensions for the Bootstrap Protocol
- 1552 PPP Internetwork Packet Exchange Control Protocol (IPXCP)
- 1661 The Point-to-Point Protocol (PPP)
- 1828 IP Authentication using Keyed MD5
- 1829 ESP DES-CBC Transform
- 1851 ESP Triple DES-CBC Transform
- 1852 IP Authentication using Keyed SHA
- 1886 DNS Extensions to Support IP Version 6
- 1994 PPP Challenge Handshake Authentication Protocol (CHAP)
- 1995 Incremental Zone Transfer in DNS
- 1996 A Mechanism for Prompt DNS Notification of Zone Changes
- 2018 TCP Selective Acknowledgment Options
- 2085 HMAC-MD5 IP Authentication with Replay Prevention
- 2104 HMAC: Keyed Hashing for Message Authentication
- 2131 Dynamic Host Configuration Protocol
- 2136 Dynamic Updates in the Domain Name System (DNS UPDATE)
- 2181 Clarifications to the DNS Specification
- 2205 Resource ReSerVation Protocol (RSVP) -- Version 1 Functional Specification
- 2236 Internet Group Management Protocol, Version 2
- 2308 Negative Caching of DNS Queries (DNS NCACHE)
- 2401 Security Architecture for the Internet Protocol
- 2402 IP Authentication Header
- 2406 IP Encapsulating Security Payload (ESP)
- 2581 TCP Congestion Control
|