| 21RADVISION | RADVISION Port Security Reference GuideSCOPIA DesktopThe SCOPIA Desktop Server is typically located in the DMZ (Figure 1-3 on page 21). It thereforehas two sides to its connections, one towards the internal enterprise network while the other istowards the public.Figure 1-3 Locating the SCOPIA Desktop Server in the DMZTable 1-12 lists the ports that need to be opened on the SCOPIA Desktop Server’s connection tothe internal network.Table 1-12 Ports to and from the SCOPIA Desktop Server connected to the internal networkPort Range Protocol Direction Severity Functionality80 TCP Incoming Optional Used to access the SCOPIA Desktop Server web portal via aweb browser. The alternative is to configure the GUI to runon port 443.137/138 UDP Outgoing Recommendedfor performingActiveDirectoryauthenticationFrom SCOPIA Desktop to Active Directory in order to do autodiscovery and authentication.139/445 TCP Outgoing Recommendedfor ActiveDirectoryauthenticationFrom SCOPIA Desktop to Active Directory in order to do autodiscovery and authentication.443 TCP Incoming Mandatory Control connection between the SCOPIA Desktop Client andthe SCOPIA Desktop Server.1719 UDP Outgoing Mandatory SCOPIA ECS Gatekeeper