Ports in Use

Below is a list of TCP (Transmission Control Protocol) ports that are used by PAM (Privileged Access Management).

Open Ports required

Table 1: Open Ports required to install PAM (default configuration)

Process Description Port Number
HTTPS Proxy (inbound) When the PAM HTTPS Proxy Feature is enabled (configured in Settings) 8081
Internal Database PAM Internal Database 1527
Internal User Directory PAM Local Directory Services 10389/10636
Session Manager PAM Session Manager module 4822
SSH Proxy (inbound) When the PAM SSH Proxy Feature is enabled (configured in Settings) 2022
RDP Proxy (inbound) When the PAM RDP Proxy Feature is enabled (configured in Settings) 3388
PAM Web Application HTTPS 6443
PAM Web Application HTTP 8005
PAM Web Application HTTP 8080

Ports used

Table 2: Ports used by PAM Operations (some are optional and user configurable)

Process Description Port Number
Active Directory Integration LDAP/LDAPS 389/636 or 3268/3269
MS SQL Database Identity Vault (default, but configurable) 1433
MySQL or MariaDB Database Identity Vault (default, but configurable) 3306
Oracle Database Identity Vault (default, but configurable) 1521
PostgreSQL Database Identity Vault (default, but configurable) 5432
Remote Desktop (Sessions) Windows Host sessions (default, but configurable) 3389
Remote Job Execution (Windows Tasks) Executing remote tasks for Windows endpoints 5985/5986
SSH (Sessions and Tasks) SSH sessions and task execution (default, but configurable) 22
Telnet (Sessions) Telnet Host sessions (default, but configurable) 23
VNC (Sessions) VNC Host sessions (default, but configurable) 5900+n