    Network port to be opened - Firewall in between AD server and vCenter 6

      We are setting up fresh VMware environment. There will be 4 node vSAN ESXi + vCenter behind the firewall and AD server is sitting outside the firewall. Question is, what ports needs to be opened in firewall to communicate between Active directory and vCenter ?  i know 389 and other ports require for vCenter domain joining, any thing specifically for vCenter operation? like SSO or other ?