All necessary ports are already configured for the application deployed from the ISO image. Information about network accesses required by application functionality is listed in the following table.
Network accesses required by the application
| Functionality | Protocol | Port | Direction | Purpose of the connection | 
|---|---|---|---|---|
| TCP | 443 | Inbound | Application administrator's computer | |
| TCP | 22 | Inbound | Application administrator's computer | |
| TCP | 9045 by default (can be change during installation) | Inbound and outbound | Other cluster nodes | |
| Inbound SMTP traffic | TCP | 25 | Inbound | Internal and external SMTP servers | 
| Outbound SMTP traffic | TCP | 25 by default (can be changed in the application web interface) | Outbound | Internal and external SMTP servers | 
| DNS requests | UDP, TCP | 53 | Outbound | DNS server manually specified by the administrator | 
| TCP | 8080 by default (can be changed in the application web interface) | Outbound | Proxy server | |
| TCP | 443 | Outbound | Kaspersky servers • activation-v2.kaspersky.com • eu.activation-v2.kaspersky.com • americas.activation-v2.kaspersky.com • apac.activation-v2.kaspersky.com • china.activation-v2.kaspersky.com • activation-v2.geo.kaspersky.com • activate.activation-v2.kaspersky.com | |
| TCP | 80, 443 | Outbound | Kaspersky servers. You can see the list of servers in the Knowledge Base, article 6105. | |
| TCP | 443 | Outbound | Kaspersky servers • ds.kaspersky.com • ksn-file-geo.kaspersky-labs.com • ksn-verdict-geo.kaspersky-labs.com • ksn-url-geo.kaspersky-labs.com • ksn-kas-geo.kaspersky-labs.com • ksn-a-stat-geo.kaspersky-labs.com • ksn-info-geo.kaspersky-labs.com • ksn-cinfo-geo.kaspersky-labs.com • dc1.ksn.kaspersky-labs.com • dc1-file.ksn.kaspersky-labs.com • dc1-kas.ksn.kaspersky-labs.com • dc1-st.ksn.kaspersky-labs.com | |
| TCP | 443 | Outbound | KPSN server | |
| TCP | 443 | Outbound | Kaspersky servers • moebius.kaspersky-labs.com • moebius-new.kaspersky-labs.com | |
| TCP | 389 | Outbound | Active Directory servers | |
| UDP, TCP | 88 | Outbound | Active Directory servers | |
| TCP | 445 (can be changed in the application web interface) | Outbound | Active Directory servers | |
| UDP | 123 | Outbound | NTP servers | |
| TCP | 443 by default (can be changed in the application web interface) | Outbound | KATA server | |
| UDP, TCP | 161 by default (can be changed in application configuration files) | Inbound | Monitoring system | |
| UDP, TCP | 162 by default (can be changed in application configuration files) | Outbound | Monitoring system | |
| UDP | 514 by default (can be changed in application configuration files) | Outbound | External Syslog server | |
| TCP | 601 by default (can be changed in application configuration files) | Outbound | External Syslog server |