OSD fails on UDP 500

Alphabeta 1 Reputation point
2021-03-10T12:58:40.697+00:00

Is sccm task sequence dependent on port 500? Our OSD task sequence are failing when the client device are connecting to management point to fetch the policies. At this point we are observing an unusual traffic from client machines to the management point on port 500..as I’m aware client communication requires only 80/443/10123 ports to be opened and 500 is not documented anywhere.

Microsoft Security | Intune | Configuration Manager | Deployment
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Fiona Yan-MSFT 2,311 Reputation points
    2021-03-11T02:39:32.47+00:00

    @Alphabeta

    Thank you for posting in Microsoft Q&A forum.

    Based on my understanding, UDP 500 is an assigned port for ISAKMP / Internet Key Exchange. It’s not used directly by OSD, but the client may be attempting to failover connect via IPSec if one of the other required ports is blocked.

    Could we know which error are you getting when trying to deploy an OS?
    Here is a similar case may for your to refer to:
    https://social.technet.microsoft.com/Forums/en-US/4d32e2ac-4981-4088-82e6-4da3adf0d729/unable-to-deploy-os-as-udp-500-is-blocked-on-firewall?forum=configmanagerosd

    Have a good day!


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.