Port categories
Browse TCP/UDP ports grouped by what they do — databases, email, remote access, web, Active Directory and more.
Remote access & management ports
14Ports for remote shells, desktops and out-of-band management — SSH, RDP, VNC, WinRM and more. The most aggressively brute-forced surface on the internet.
Database ports
19Default ports for SQL and NoSQL databases — MySQL, PostgreSQL, MongoDB, Redis, Elasticsearch and more. Never expose these to the internet.
Web & HTTP ports
17HTTP, HTTPS and the alternate ports web apps, proxies and admin panels listen on — 80, 443, 8080, 8443 and friends.
Email ports
9The ports email uses to send and receive — SMTP, submission, IMAP, POP3 and their TLS variants. Which to use, and which to lock down.
File transfer & sharing ports
14Ports for moving and sharing files — FTP, FTPS, TFTP, SMB, NFS, AFP, rsync and network printing.
Directory & Active Directory ports
16The ports a domain controller and directory services listen on — Kerberos, LDAP, SMB, RPC, Global Catalog, WinRM and RADIUS.
DNS & core network ports
12DNS, encrypted DNS and the core network/infrastructure protocols — resolution, time, routing, logging and discovery.
Messaging & IoT ports
12Message brokers and IoT protocols — MQTT, AMQP, NATS, Kafka, ActiveMQ, CoAP and coordination services.
ICS / SCADA ports
9Industrial control and operational-technology protocols — Modbus, S7comm, DNP3, BACnet, EtherNet/IP and IPMI. Mostly unauthenticated by design.
Proxy & VPN ports
9Proxies, tunnels and VPNs — SOCKS, Squid, Shadowsocks, Tor, OpenVPN, IKE/IPsec, L2TP and PPTP.
VoIP, media & streaming ports
10Voice, video, streaming and game-server ports — SIP, RTP, RTSP, H.323 and popular media/game services.
Backdoor & suspicious ports
5Ports tied to trojans, backdoors and C2 frameworks. An open one is a strong signal to investigate a host for compromise.