diff --git a/ATPDocs/deploy/prerequisites.md b/ATPDocs/deploy/prerequisites.md index c826517e0e..e301edff94 100644 --- a/ATPDocs/deploy/prerequisites.md +++ b/ATPDocs/deploy/prerequisites.md @@ -69,13 +69,13 @@ Sensors running on these operating systems will continue to report to Defender f |**Protocol** |**Transport** |**Port** |**From** |**To** | |------------|---------|---------|-------|--------------| |**Internet ports** | | | | | -|**SSL** (\*.atp.azure.com)

Alternately, [configure access through a proxy](configure-proxy.md). |TCP |443 |Defender for Identity sensor|Defender for Identity cloud service| +|**SSL** (\*.atp.azure.com)

Alternatively, [configure access through a proxy](configure-proxy.md). |TCP |443 |Defender for Identity sensor|Defender for Identity cloud service| |**Internal ports** | | | | | |**DNS** |TCP and UDP |53 |Defender for Identity sensor|DNS Servers | |**Netlogon**
(SMB, CIFS, SAM-R)|TCP/UDP |445 |Defender for Identity sensor|All devices on the network| |**RADIUS** |UDP |1813|RADIUS |Defender for Identity sensor | |**Localhost ports**: Required for the sensor service updater

By default, *localhost* to *localhost* traffic is allowed unless a custom firewall policy blocks it. | | | | | -|**SSL** |TCP |444 |Sensor service|Sensor updater service | +|**SSL** |TCP |443 |Sensor service|Sensor updater service | |**Network Name Resolution (NNR) ports**

To resolve IP addresses to computer names, we recommend opening all ports listed. However, only one port is required. | | | | | |**NTLM over RPC** |TCP |Port 135 |Defender for Identity sensor|All devices on network| |**NetBIOS** |UDP |137 |Defender for Identity sensor|All devices on network|