The following table lists all ports that the Octopus Server requires for normal operation. These ports need to be available for successful installation and system operation.


Port Number

Applicable Role

Service

Notes

443

AIO/AUTH/DMZ

nginx

portal/rest/adpa

2222

MC/AIO

sdomcbe/sshd

default/user configurable

4444

MC/AIO

sdomcbe

auth → mc comm

5555

AIO/AUTH/DMZ

reverse proxy (nginx) for the portal (local)

5432

MC/AIO

postgresql

if configured and running

6379

MC/AIO/AUTH

redis

9600/10000

MC/AIO

logstash

8008

MC/AIO

nginx

/api and /doc when ssl is disabled

8080

AIO/AUTH/DMZ

reverse proxy (nginx) for webauthn (local)

8443

MC/AIO

nginx

/api and /doc when ssl is enabled

3000

MC/AIO

reverse proxy (nginx) for sdomcbe

/api and /doc on 8443 or 8008

3331

AIO/AUTH/DMZ

reverse proxy (nginx) for sdomon/rest (local)

mc → auth comm

3332

AIO/AUTH/DMZ

reverse proxy (nginx) for sdomon/adpa

3333

AIO/AUTH/DMZ

reverse proxy (nginx) for sdomon/rest

3334

AIO/AUTH/DMZ

reverse proxy (nginx) for sdomon/saml

3340

AIO/AUTH/DMZ

reverse proxy (nginx) for sdomon/saml (metadata)

9200/9300

AIO/MC

elasticsearch

13700 + slot_id

MC/AIO

sdotun

mc → auth comm. Allocated for each connected authserver. The slot_id can be found in /opt/sdo/.conf of the authserver.

14444

AIO/AUTH/DMZ

sdotun

auth → mc comm tunneling

16379

AUTH/DMZ/secondaryMC

sdotun

redis tunneling

10001

AUTH/DMZ/AIO

sdotun

logstash tunneling

12000 + dir_id

AUTH/AIO

ldap-proxy

Footer - Secret Double Octopus