1 and ::1 local interface addresses Note: - In RHEL 7 and 8, 389 port is used for replication instead of 7389 port.

For example, if the firewall separates members and DCs, you don't have to open the FRS or DFSR ports. Port 636 is for LDAPS, which is LDAP over SSL.



The default port for LDAP is port 389, but LDAPS uses port 636 and establishes SSL/TLS upon connecting with a client. .

Sessions that use TLS/SSL by using a predetermined port (636, 3269, or a custom LDS port), or standard ports (389, 3268, or a custom LDS port) that use the STARTTLS extended operation.
Once initiated, there is no difference between ldaps:// and StartTLS.

A client starts an LDAP session by connecting to an LDAP server, called a Directory System Agent (DSA), by default on TCP and UDP port 389, or on port 636 for LDAPS (LDAP over TLS/SSL, see below).

LDAP servers typically use the following ports: TCP 389 LDAP plain text.

Port 636 is used for secure communications.

Establish a connection to the domain on TCP port 636.