Pretty basic, although the high ports are a gotcha.
Application protocol | Protocol | Ports |
RPC | TCP | 135 |
SMB | TCP | 445, 139 |
Randomly allocated high ports | TCP | Random port numbers between 49152 – 65535 |
For the web-based portions of PKI, you will also need the standard web ports:
Application protocol | Protocol | Ports |
Web | TCP | 80 |
Web SSL | TCP | 443 |