Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Exchange Online and Office 365 firewall settings for internal and external access.

Posted on 2014-04-23
5
Medium Priority
?
3,371 Views
Last Modified: 2014-05-25
I am preparing for Exchange Online to migrate all of our mailboxes to the cloud using a hybrid solution offered by microsoft. In that solution, they have stated a requirement to have an ADFS server and an DirSync server.

Now when I build our servers, all the ports are locked down by default by our hosting company. I am trying to keep this as secure as possible. I am assuming that ADFS needs to be externally facing. What ports will I need to open for the external connectivity.

Also what ports will i require for the internal connectivity between our internal servers.

Lastly, does the DirSync tool need external access and if so what ports are required internally and externally or does the DirSync just need to connect to the ADFS server from the Domain Controller?

 Please help! Newbie with Office 365.
0
Comment
Question by:MSSC_support
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 43

Expert Comment

by:Vasil Michev (MVP)
ID: 40017788
You can review all the URLs/IPs and Ports needed here:

http://technet.microsoft.com/en-us/library/hh852522.aspx

http://technet.microsoft.com/library/hh373144.aspx

Depending on which services you are going to use, you might not need some of those. Dirsync needs external access, on 443 (and 80). Use AD FS proxies for external access, the port is again 443.
0
 

Accepted Solution

by:
MSSC_support earned 0 total points
ID: 40019527
Thats great, how about the internal ports I will need?
0
 
LVL 43

Expert Comment

by:Vasil Michev (MVP)
ID: 40019729
For AD FS you need 443, dirsync uses LDAP ones.
0
 

Author Comment

by:MSSC_support
ID: 40078016
Got it. Thanks All.
0
 

Author Closing Comment

by:MSSC_support
ID: 40089266
The site had all the ports i required.
0

Featured Post

Veeam Task Manager for Hyper-V

Task Manager for Hyper-V provides critical information that allows you to monitor Hyper-V performance by displaying real-time views of CPU and memory at the individual VM-level, so you can quickly identify which VMs are using host resources.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
I don't pretend to be an expert at this, but I have found a few things that are useful. I hope that sharing them here will help others, so they will not have to face some rather hard choices. Since I felt this to be a topic of enough importance and…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…
This is my first video review of Microsoft Bookings, I will be doing a part two with a bit more information, but wanted to get this out to you folks.

704 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question