MOVEit Port Requirements
MOVEit Transfer
Inbound
Where “Internet” is listed, you may decide to only open ports from a specific address; if using the Ipswitch Gateway, only open Intranet ports.
| Port | Notes | Source |
| 21 | Explicit FTP(s) | Intranet, Internet |
| 22 | SFTP | Intranet, Internet |
| 443 | HTTPS | Intranet, Internet |
| 990 | Implicit FTPS | Intranet, Internet |
| 3000-3100 | FTPS Passive port range | Intranet, Internet |
| 8443 | Mobile Interface | Internet |
Outbound
| Port | Notes | Target |
| 25 | SMTP (depending on your email configuration) | Your mail server |
| 123 | UDP to time server, see http://www.pool.ntp.org/zone/uk | Time Server specified in ntp.conf file |
| 587 | SMTP (depending on your email configuration) | Your mail server |
| 389 | LDAP | Your AD server |
| 636 | LDAPS | Your AD Server |
| 1344 | ICAP (AV and/or DLP) | Your ICAP Server |
| 1433 | MS SQL (if used) | Your MS SQL server |
| 1645 | Radius (if used) | Your Radius server |
| 8443 | HTTPS to Ipswitch Analytics server (if used) | Ipswitch Analytics server |
| 10022 | SSTP tunnel | MOVEit Gateway server |
MOVEit Automation
Inbound
| Port | Notes | Source |
| 443 | HTTPS (web admin) | Intranet |
| 3471-3473 | MOVEit Automation admin | Intranet |
| 3478-3479 | AS/2 module | Intranet |
Outbound
Where “Internet” is listed, you may decide to only open ports to a specific address. Ports for specific protocols only need to be opened when there is a need for them
| Port | Notes | Target |
| 21 | Explicit FTP(s), plain FTP | Intranet, Internet |
| 22 | SFTP | Intranet, Internet |
| 25 | SMTP (depending on your email configuration) | Your mail server |
| 80 | HTTP | Intranet, Internet |
| 110 | POP3 | Intranet, Internet |
| 139, 445 | SMB (Server Message Block) – Windows shared folders | Intranet |
| 443 | HTTPS | Intranet, Internet |
| 587 | SMTP (depending on your email configuration) | Your mail server |
| 990 | Implicit FTPS | Intranet, Internet |
| 3472 | MOVEit Automation Failover (if required) | Alternate MOVEit Automation server |
| 8443 | HTTPS to Ipswitch Analytics server (if used) | Ipswitch Analytics server |
MOVEit Gateway
Inbound
Where “Internet” is listed, you may decide to only open ports from a specific address
| Port | Notes | Source |
| 21 | Explicit FTP(s) | Internet |
| 22 | SFTP | Internet |
| 443 | HTTPS | Internet |
| 990 | Implicit FTPS | Internet |
| 3000-3100 | FTPS Passive port range | Internet |
| 9443 | Remote Access (if required) | Intranet |
| 10022 | SSTP tunnel | MOVEit Transfer server |
Outbound
No ports need to be opened for outbound traffic