For SCCM 2012, I've found that LDAP, contrary to the information in section 2. Site Server <--> Domain Controllers, also uses UDP 389 in both directions.
↧