Network Port: 389
Network Port Reference Guide
Registered Service Name
LDAP Directory Service
Transport Protocol
TCP/UDP
Functional Overview
Port 389 is used by Lightweight Directory Access Protocol (LDAP) for directory identity queries and Active Directory authentication.
Security Risks & Vulnerabilities
Unencrypted LDAP passes user credentials in cleartext over the wire. Enforce LDAPS (Port 636) or StartTLS to secure directory traffic.
How to audit network port status
1. Scan Open Ports: Use our Port Scanner utility to verify if this port is actively listening on your host.
2. Verify Encryption: Audit the service layer to confirm SSL/TLS is protecting transmission payload.
3. Hardening Rules: Apply the firewall instructions below to shut down unauthorized inbound ports.
UFW Firewall Rules
Allow Command
sudo ufw allow 389/tcp
Block Command
sudo ufw deny 389/tcp
iptables Firewall Rules
Allow Command
sudo iptables -A INPUT -p tcp --dport 389 -j ACCEPT
Block Command
sudo iptables -A INPUT -p tcp --dport 389 -j DROP
Port Diagnostic Tools
Authoritative Standards
Port assignments governed by IANA. Well-known ports (0–1023) require IANA approval per RFC 6335.