Skip to main content
Role Availability | ✔️ Read-Only ✔️ Investigator ✔️ Analyst ✔️ Manager This table includes all configuration issues you can find in USM Anywhere: List of Configuration Issues in USM Anywhere
CategorySubcategoryProtocol (Port)Description
Global access to administration portSSHTCP (22)Global access to the port has been defined within this security group. This should be restricted to the IP Range of the company.
Global access to internal portDNS (UDP) (53)Global access to the DNS port has been defined within this security group.
Global access to internal portDNS (TCP)TCP (53)Global access to the DNS port has been defined within this security group.
Global access to internal portMini SQLTCP (4333)Global access to the MSQL port has been defined within this security group. This should be an internally facing port only.
Global access to internal portSQL Server (UDP Port)UDP (1434)Global access to the SQL Server port has been defined within this security group. This should be an internally facing port only.
Global access to internal portSQL Server (TCP Port)TCP (1433)Global access to the SQL Server port has been defined within this security group. This should be an internally facing port only.
Global access to internal portPostgreSQL ServerTCP (5432)Global access to the PostgreSQL port has been defined within this security group. This should be an internally facing port only.
Global access to internal portMySQL ServerTCP (3306)Global access to the MySQL port has been defined within this security group. This should be an internally facing port only.
Global access to internal portSyslogUDP (514)Global access to the Syslog port has been defined within this security group. This should be an internally facing port only.
Global access to internal portrsyncTCP (873)Global access to the rsync port has been defined within this security group. This should be an internally facing port only.
Global access to internal portMongoDB (UDP)UDP (27017)Global access to the MongoDB port has been defined within this security group. This should be an internally facing port only.
Global access to internal portMongoDB (TCP)TCP (27017)Global access to the MongoDB port has been defined within this security group. This should be an internally facing port only.
Global access to internal portCouchDB (UDP)UDP (5984)Global access to the CouchDB port has been defined within this security group. This should be an internally facing port only.
Global access to internal portCouchDB (TCP)TCP (5984)Global access to the CouchDB port has been defined within this security group. This should be an internally facing port only.
Global access to administration portVNC ServerTCP (5900)Global access to the VNC Server port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portVNC ListenerTCP (5500)Global access to the VNC Listener port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portWindows RPCTCP (135)Global access to the Windows RPC port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portWindows Remote DesktopTCP (3389)Global access to the Windows Remote Desktop port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portTelnetTCP (23)Global access to the Telnet port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portX11 (TCP)TCP (6000)Global access to the X11 port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to administration portX11 (UDP)UDP (6001)Global access to the X11 port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portSMTPTCP (25)Global access to the SMTP port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portFTPTCP (21)Global access to the FTP port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portFTP DataTCP (20)Global access to the FTP (data) port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portCIFSUDP (445)Global access to the CIFS port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portNetBios (Named Services)UDP (137)Global access to the NetBios (Named Services) port has been defined within this security group. This should be restricted to a company owned CIDR.
Global access to service portNetBios (Datagram Services)UDP (138)Global access to the NetBios (Datagram Services) port has been defined within this security group. This should be restricted to a company owned CIDR.
ICMP globally permittedICMPICMPICMP is globally permitted.
Global access to service portAll TCP Ports OpenTCP (1)All TCP ports have been explicitly permitted by this security group. Access to your system should be restricted to the minimal set of TCP ports you require to access for operation. In addition, ensure ports that are for administrative access or do not require global access should be restricted to a company owned CIDR.
Global access to service portAll UDP Ports OpenUDP (1)All UDP ports have been explicitly permitted by this security group. Access to your system should be restricted to the minimal set of UDP ports you require to access for operation. In addition, ensure ports that are for administrative access or do not require global access should be restricted to a company owned CIDR.
I