Table A: Ports that Enable Remote Access to SBS Services
TCP PortServiceDescription
21FTPEnables external and internal file transfer
25Exchange ServerEnables incoming and outgoing SMTP mail
80 (http://)IISEnables all nonsecure browser access, including: internal access to IIS Webs including the company Web, Windows SharePoint Web, Windows SharePoint administration Web, and server monitoring and usage reports Enables internal access to Exchange by OWA and OMA clients
110POP3Enables Exchange to accept incoming POP3 mail
123 (UDP port)NTPEnables the system to synchronize time with an external Network Time Protocol (NTP) server
143IMAP4Enables Exchange to accept incoming IMAP4-compliant messages
220IMAP3Enables Exchange to accept incoming IMAP3-compliant messages
443 (https://)OutlookEnables all secure browser access, including external access to Exchange for Outlook 2003, OWA, and OMA clients; required for external access to server monitoring and usage reports
444Windows Share Point ServicesEnables internal and external access to the SharePoint Web
500IPSecEnables external VPN connections by using IPSec
1701L2TP clientsEnables external L2TP VPN connections
1723PPTP clientsEnables external PPTP VPN connections
3389Terminal ServicesEnables internal and external Terminal Services client connections
4125 (Note: you can change this port in RRAS)Remote Web WorkplaceEnables external OWA access to Exchange, plus internal and external HTTPS access to the client Web site
4500IPSecInternet Key Exchange (IKE) Network Address Translation (NAT) traversal