Port 445 (ms-ds) blocked by various service providers RRS feed

  • Question

  • The folks over at @AzureSupport on Twitter asked that I share this article link so internal engineering can look into possible remedies:


    In recap:

    1) TCP Port 445 is used by Microsoft AD and the SMB protocol stack

    2) Azure File Services and Windows file sharing uses port 445

    3) WannaCry and other malware also uses port 445

    4) Service providers like Comcast are blocking port 445 upstream

    5) It could be resolved by making changes to Windows' SMB protocol stack and SAMBA/CIFS to allow communication over alternate ports, much in the same way this is done with RDP connections and Azure today.

    Wednesday, August 30, 2017 2:28 PM

All replies

  • Thank you for your feedback. You may leave your feedback here. All the feedback you share in these forums will be monitored and reviewed by the Microsoft engineering teams responsible for building Azure.

    Do click on "Mark as Answer" on the post that helps you, this can be beneficial to other community members.

    • Proposed as answer by vikranth s Wednesday, August 30, 2017 7:56 PM
    Wednesday, August 30, 2017 3:28 PM