88 kerberos
389 ldap
636 ldap SSL
3659 sasl auth (might be optional, not sure).
However, OD (or AD for that matter) over the internet is likely going to be very unreliable if it works at all. It will be more consistent if you just allow the clients to cache their credentials and MCX.
Comments are closed