Quick Installation Guide Single Appliance
Version 8.1 7
Network Access Requirements
Port Service To or From
Forescout
Platform
Function
22/TCP
SSH
From Allows remote inspection of OS X and
Linux endpoints.
Allows the Forescout platform to
communicate with network switches
and routers.
To
Allows access to the Forescout
platform command line interface.
2222/TCP SSH To (High Availability) Allows access to the
physical Appliances that are part of the
High Availability pair.
Use 22/TCP to access the shared
(virtual) IP address of the pair.
25/TCP SMTP From Allows the Forescout platform access
to the enterprise mail relay.
53/UDP DNS From Allows the Forescout platform to
resolve internal IP addresses.
80/TCP HTTP To Allows HTTP redirection.
123/UDP NTP From Allows the Forescout platform access
to a local time server or
ntp.forescout.net.
By default the Forescout platform
accesses ntp.foreScout.net
135/TCP MS-WMI From Allows remote inspection of Windows
endpoints.
139/TCP
SMB, MS-RPC From
Allows remote inspection of Windows
endpoints (For endpoints running
Windows 7 and earlier).
445/TCP Allows remote inspection of Windows
endpoints.