network ports for Entra AD connect

Hazem Elsaiegh 60 Reputation points

Hello Team ,we want to set up Entra connect (azure AD connect) , the network requirements here lists the ports between AD connect servers and domain controllers and also towards ADFS and other services, the question is , are these ports bi -directional ? for example 445 and dynamic range do we need them bi directional or what ?I do wish to know the source and destination and the direction for the ports mentioned in the official link

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
17,470 questions
0 comments No comments
{count} votes

Accepted answer
  1. Domooney-MSFT 1,026 Reputation points Microsoft Employee

    Hi @Hazem Elsaiegh

    Thank you for posting your query on Microsoft Q&A.

    The ports listed in the document you have shared are all ports that are required to be open on the target system / outbound from the AD Connect server i.e port 389 will need to be open on the domain controllers, the Azure AD connect sever will use dynamic ports.

    Let me know if this helps, if you have any further queries I would be happy to help :)

    Kind Regards,


0 additional answers

Sort by: Most helpful