Common Ports

Appendix C. Common Ports

The following tables list the most common communication ports used by services, daemons, and programs included in Red Hat Enterprise Linux.

Table C-1 lists the Well Known Ports as defined by IANA and is used by Red Hat Enterprise Linux as default communication ports for various services, including FTP, SSH, and Samba.

Port # / LayerNameComment
1tcpmuxTCP port service multiplexer
5rjeRemote Job Entry
7echoEcho service
9discardNull service for connection testing
11systatSystem Status service for listing connected ports
13daytimeSends date and time to requesting host
17qotdSends quote of the day to connected host
18mspMessage Send Protocol
19chargenCharacter Generation service; sends endless stream of characters
20ftp-dataFTP data port
21ftpFile Transfer Protocol (FTP) port; sometimes used by File Service Protocol (FSP)
22sshSecure Shell (SSH) service
23telnetThe Telnet service
25smtpSimple Mail Transfer Protocol (SMTP)
37timeTime Protocol
39rlpResource Location Protocol
42nameserverInternet Name Service
43nicnameWHOIS directory service
49tacacsTerminal Access Controller Access Control System for TCP/IP based authentication and access
50re-mail-ckRemote Mail Checking Protocol
53domaindomain name services (such as BIND)
63whois++WHOIS++, extended WHOIS services
67bootpsBootstrap Protocol (BOOTP) services; also used by Dynamic Host Configuration Protocol (DHCP) services
68bootpcBootstrap (BOOTP) client; also used by Dynamic Host Control Protocol (DHCP) clients
69tftpTrivial File Transfer Protocol (TFTP)
70gopherGopher Internet document search and retrieval
71netrjs-1Remote Job Service
72netrjs-2Remote Job Service
73netrjs-3Remote Job Service
73netrjs-4Remote Job Service
79fingerFinger service for user contact information
80httpHyperText Transfer Protocol (HTTP) for World Wide Web (WWW) services
88kerberosKerberos network authentication system
95supdupTelnet protocol extension
101hostnameHostname services on SRI-NIC machines
102/tcpiso-tsapISO Development Environment (ISODE) network applications
105csnet-nsMailbox nameserver; also used by CSO nameserver
107rtelnetRemote Telnet
109pop2Post Office Protocol version 2
110pop3Post Office Protocol version 3
111sunrpcRemote Procedure Call (RPC) Protocol for remote command execution, used by Network Filesystem (NFS)
113authAuthentication and Ident protocols
115sftpSecure File Transfer Protocol (SFTP) services
117uucp-pathUnix-to-Unix Copy Protocol (UUCP) Path services
119nntpNetwork News Transfer Protocol (NNTP) for the USENET discussion system
123ntpNetwork Time Protocol (NTP)
137netbios-nsNETBIOS Name Service used in Red Hat Enterprise Linux by Samba
138netbios-dgmNETBIOS Datagram Service used in Red Hat Enterprise Linux by Samba
139netbios-ssnNETBIOS Session Service used in Red Hat Enterprise Linux by Samba
143imapInternet Message Access Protocol (IMAP)
161snmpSimple Network Management Protocol (SNMP)
162snmptrapTraps for SNMP
163cmip-manCommon Management Information Protocol (CMIP)
164cmip-agentCommon Management Information Protocol (CMIP)
174mailqMAILQ email transport queue
177xdmcpX Display Manager Control Protocol (XDMCP)
178nextstepNeXTStep window server
179bgpBorder Gateway Protocol
191prosperoProspero distributed filesystem services
194ircInternet Relay Chat (IRC)
199smuxSNMP UNIX Multiplexer
201at-rtmpAppleTalk routing
202at-nbpAppleTalk name binding
204at-echoAppleTalk echo
206at-zisAppleTalk zone information
209qmtpQuick Mail Transfer Protocol (QMTP)
210z39.50NISO Z39.50 database
213ipxInternetwork Packet Exchange (IPX), a datagram protocol commonly used in Novell Netware environments
220imap3Internet Message Access Protocol version 3
245linkLINK / 3-DNS iQuery service
347fatservFATMEN file and tape management server
363rsvp_tunnelRSVP Tunnel
369rpc2portmapCoda file system portmapper
370codaauth2Coda file system authentication services
372ulistprocUNIX LISTSERV
389ldapLightweight Directory Access Protocol (LDAP)
427svrlocService Location Protocol (SLP)
434mobileip-agentMobile Internet Protocol (IP) agent
435mobilip-mnMobile Internet Protocol (IP) manager
443httpsSecure Hypertext Transfer Protocol (HTTP)
444snppSimple Network Paging Protocol
445microsoft-dsServer Message Block (SMB) over TCP/IP
464kpasswdKerberos password and key changing services
468photurisPhoturis session key management protocol
487saftSimple Asynchronous File Transfer (SAFT) protocol
488gss-httpGeneric Security Services (GSS) for HTTP
496pim-rp-discRendezvous Point Discovery (RP-DISC) for Protocol Independent Multicast (PIM) services
500isakmpInternet Security Association and Key Management Protocol (ISAKMP)
535iiopInternet Inter-Orb Protocol (IIOP)
538gdomapGNUstep Distributed Objects Mapper (GDOMAP)
546dhcpv6-clientDynamic Host Configuration Protocol (DHCP) version 6 client
547dhcpv6-serverDynamic Host Configuration Protocol (DHCP) version 6 Service
554rtspReal Time Stream Control Protocol (RTSP)
563nntpsNetwork News Transport Protocol over Secure Sockets Layer (NNTPS)
565whoamiwhoami user ID listing
587submissionMail Message Submission Agent (MSA)
610npmp-localNetwork Peripheral Management Protocol (NPMP) local / Distributed Queueing System (DQS)
611npmp-guiNetwork Peripheral Management Protocol (NPMP) GUI / Distributed Queueing System (DQS)
612hmmp-indHyperMedia Management Protocol (HMMP) Indication / DQS
631ippInternet Printing Protocol (IPP)
636ldapsLightweight Directory Access Protocol over Secure Sockets Layer (LDAPS)
674acapApplication Configuration Access Protocol (ACAP)
694ha-clusterHeartbeat services for High-Availability Clusters
749kerberos-admKerberos version 5 (v5) ‘kadmin’ database administration
750kerberos-ivKerberos version 4 (v4) services
765websterNetwork Dictionary
767phonebookNetwork Phonebook
873rsyncrsync file transfer services
992telnetsTelnet over Secure Sockets Layer (TelnetS)
993imapsInternet Message Access Protocol over Secure Sockets Layer (IMAPS)
994ircsInternet Relay Chat over Secure Sockets Layer (IRCS)
995pop3sPost Office Protocol version 3 over Secure Sockets Layer (POP3S)

Table C-1. Well Known Ports

Table C-2 lists UNIX-specific ports and cover services ranging from email to authentication and more. Names enclosed in brackets (for example, [service]) are either daemon names for the service or common alias(es).

Port # / LayerNameComment
512/tcpexecAuthentication for remote process execution
512/udpbiff [comsat]Asynchrous mail client (biff) and service (comsat)
513/tcploginRemote Login (rlogin)
513/udpwho [whod]whod user logging daemon
514/tcpshell [cmd]Remote shell (rshell) and remote copy (rcp) with no logging
514/udpsyslogUNIX system logging service
515printer [spooler]Line printer (lpr) spooler
517/udptalkTalk remote calling service and client
518/udpntalkNetwork talk (ntalk) remote calling service and client
519utime [unixtime]UNIX time (utime) protocol
520/tcpefsExtended Filename Server (EFS)
520/udprouter [route, routed]Routing Information Protocol (RIP)
521ripngRouting Information Protocol for Internet Protocol version 6 (IPv6)
525timed [timeserver]Time daemon (timed)
526/tcptempo [newdate]Tempo
530/tcpcourier [rpc]Courier Remote Procedure Call (RPC) protocol
531/tcpconference [chat]Internet Relay Chat
532netnewsNetnews newsgroup service
533/udpnetwallNetwall for emergency broadcasts
540/tcpuucp [uucpd]UNIX-to-UNIX copy services
543/tcpkloginKerberos version 5 (v5) remote login
544/tcpkshellKerberos version 5 (v5) remote shell
548afpovertcpAppletalk Filing Protocol (AFP) over Transmission Control Protocol (TCP)
556remotefs [rfs_server, rfs]Brunhoff’s Remote Filesystem (RFS)

Table C-2. UNIX Specific Ports

Table C-3 lists ports submitted by the network and software community to the IANA for formal registration into the port number list.

Port # / LayerNameComment
1080socksSOCKS network application proxy services
1236bvcontrol [rmtcfg]Remote configuration server for Gracilis Packeten network switches[a]
1300h323hostcallscH.323 telecommunication Host Call Secure
1433ms-sql-sMicrosoft SQL Server
1434ms-sql-mMicrosoft SQL Monitor
1494icaCitrix ICA Client
1512winsMicrosoft Windows Internet Name Server
1524ingreslockIngres Database Management System (DBMS) lock services
1525prospero-npProspero non-privileged
1645datametrics [old-radius]Datametrics / old radius entry
1646sa-msg-port [oldradacct]sa-msg-port / old radacct entry
1649kermitKermit file transfer and management service
1701l2tp [l2f]Layer 2 Tunneling Protocol (LT2P) / Layer 2 Forwarding (L2F)
1718h323gatediscH.323 telecommunication Gatekeeper Discovery
1719h323gatestatH.323 telecommunication Gatekeeper Status
1720h323hostcallH.323 telecommunication Host Call setup
1758tftp-mcastTrivial FTP Multicast
1759/udpmtftpMulticast Trivial FTP (MTFTP)
1789helloHello router communication protocol
1812radiusRadius dial-up authentication and accounting services
1813radius-acctRadius Accounting
1911mtpStarlight Networks Multimedia Transport Protocol (MTP)
1985hsrpCisco Hot Standby Router Protocol
1986licensedaemonCisco License Management Daemon
1997gdp-portCisco Gateway Discovery Protocol (GDP)
2049nfs [nfsd]Network File System (NFS)
2102zephyr-srvZephyr distributed messaging Server
2103zephyr-cltZephyr client
2104zephyr-hmZephyr host manager
2401cvspserverConcurrent Versions System (CVS) client/server operations
2430/tcpvenusVenus cache manager for Coda file system (codacon port)
2430/udpvenusVenus cache manager for Coda file system (callback/wbc interface)
2431/tcpvenus-seVenus Transmission Control Protocol (TCP) side effects
2431/udpvenus-seVenus User Datagram Protocol (UDP) side effects
2432/udpcodasrvCoda file system server port
2433/tcpcodasrv-seCoda file system TCP side effects
2433/udpcodasrv-seCoda file system UDP SFTP side effect
2600hpstgmgr [zebrasrv]Zebra routing[b]
2601discp-client [zebra]discp client; Zebra integrated shell
2602discp-server [ripd]discp server; Routing Information Protocol daemon (ripd)
2603servicemeter [ripngd]Service Meter; RIP daemon for IPv6
2604nsc-ccs [ospfd]NSC CCS; Open Shortest Path First daemon (ospfd)
2605nsc-posaNSC POSA; Border Gateway Protocol daemon (bgpd)
2606netmon [ospf6d]Dell Netmon; OSPF for IPv6 daemon (ospf6d)
2809corbalocCommon Object Request Broker Architecture (CORBA) naming service locator
3130icpv2Internet Cache Protocol version 2 (v2); used by Squid proxy caching server
3306mysqlMySQL database service
3346trnsprntproxyTransparent proxy
4011pxePre-execution Environment (PXE) service
4321rwhoisRemote Whois (rwhois) service
4444krb524Kerberos version 5 (v5) to version 4 (v4) ticket translator
5002rfeRadio Free Ethernet (RFE) audio broadcasting system
5308cfengineConfiguration engine (Cfengine)
5999cvsup [CVSup]CVSup file transfer and update tool
6000/tcpx11 [X]X Window System services
7000afs3-fileserverAndrew File System (AFS) file server
7001afs3-callbackAFS port for callbacks to cache manager
7002afs3-prserverAFS user and group database
7003afs3-vlserverAFS volume location database
7004afs3-kaserverAFS Kerberos authentication service
7005afs3-volserAFS volume management server
7006afs3-errorsAFS error interpretation service
7007afs3-bosAFS basic overseer process
7008afs3-updateAFS server-to-server updater
7009afs3-rmtsysAFS remote cache manager service
9876sdSession Director for IP multicast conferencing
10080amandaAdvanced Maryland Automatic Network Disk Archiver (Amanda) backup services
11371pgpkeyserverPretty Good Privacy (PGP) / GNU Privacy Guard (GPG) public keyserver
11720h323callsigaltH.323 Call Signal Alternate
13720bprdVeritas NetBackup Request Daemon (bprd)
13721bpdbmVeritas NetBackup Database Manager (bpdbm)
13722bpjava-msvcVeritas NetBackup Java / Microsoft Visual C++ (MSVC) protocol
13724vnetdVeritas network utility
13782bpcdVeritas NetBackup
13783vopiedVeritas VOPIE authentication daemon
22273wnn6 [wnn4]Kana/Kanji conversion system[c]
26000quakeQuake (and related) multi-player game servers
26208wnn6-dsWnn6 Kana/Kanji server
33434tracerouteTraceroute network tracking tool
a. Comment from /etc/services: “Port 1236 is registered as `bvcontrol’, but is also used by the Gracilis Packeten remote config server. The official name is listed as the primary name, with the unregistered name as an alias.”
b. Comment from /etc/services: “Ports numbered 2600 through 2606 are used by the zebra package without being registered. The primary names are the registered names, and the unregistered names used by zebra are listed as aliases.”
c. Comment from /etc/services: “This port is registered as wnn6, but also used under the unregistered name ‘wnn4’ by the FreeWnn package.”

Table C-3. Registered Ports

Table C-4 is a listing of ports related to the Datagram Delivery Protocol (DDP) used on AppleTalk networks.

Port # / LayerNameComment
1/ddprtmpRouting Table Management Protocol
2/ddpnbpName Binding Protocol
4/ddpechoAppleTalk Echo Protocol
6/ddpzipZone Information Protocol

Table C-4. Datagram Deliver Protocol Ports

Table C-5 is a listing of ports related to the Kerberos network authentication protocol. Where noted, v5 refers to the Kerberos version 5 protocol. Note that these ports are not registered with the IANA.

Port # / LayerNameComment
751kerberos_masterKerberos authentication
752passwd_serverKerberos Password (kpasswd) server
754krb5_propKerberos v5 slave propagation
760krbupdate [kreg]Kerberos registration
1109kpopKerberos Post Office Protocol (KPOP)
2053knetdKerberos de-multiplexor
2105ekloginKerberos v5 encrypted remote login (rlogin)

Table C-5. Kerberos (Project Athena/MIT) Ports

Table C-6 is a listing of unregistered ports that are used by services and protocols that may be installed on your Red Hat Enterprise Linux system, or that is necessary for communication between Red Hat Enterprise Linux and other operating systems.

Port # / LayerNameComment
15/tcpnetstatNetwork Status (netstat)
98/tcplinuxconfLinuxconf Linux administration tool
106poppassdPost Office Protocol password change daemon (POPPASSD)
465/tcpsmtpsSimple Mail Transfer Protocol over Secure Sockets Layer (SMTPS)
616/tcpgiiGated (routing daemon) Interactive Interface
808omirr [omirrd]Online Mirror (Omirr) file mirroring services
871/tcpsupfileservSoftware Upgrade Protocol (SUP) server
901/tcpswatSamba Web Administration Tool (SWAT)
953rndcBerkeley Internet Name Domain version 9 (BIND 9) remote configuration tool
1127/tcpsupfiledbgSoftware Upgrade Protocol (SUP) debugging
1178/tcpskkservSimple Kana to Kanji (SKK) Japanese input server
1313/tcpxtelFrench Minitel text information system
1529/tcpsupport [prmsd, gnatsd]GNATS bug tracking system
2003/tcpcfingerGNU finger
2150ninstallNetwork Installation Service
2988afbackupafbackup client-server backup system
3128/tcpsquidSquid Web proxy cache
3455prsvpRSVP port
5432postgresPostgreSQL database
4557/tcpfaxFAX transmission service (old service)
4559/tcphylafaxHylaFAX client-server protocol (new service)
5232sgi-dglSGI Distributed Graphics Library
5354noclogNOCOL network operation center logging daemon (noclogd)
5355hostmonNOCOL network operation center host monitoring
5680/tcpcannaCanna Japanese character input interface
6010/tcpx11-ssh-offsetSecure Shell (SSH) X11 forwarding offset
6667ircdInternet Relay Chat daemon (ircd)
7100/tcpxfsX Font Server (XFS)
7666/tcptircproxyTircproxy IRC proxy service
8008http-altHypertext Tranfer Protocol (HTTP) alternate
8080webcacheWorld Wide Web (WWW) caching service
8081tproxyTransparent Proxy
9100/tcpjetdirect [laserjet, hplj]Hewlett-Packard (HP) JetDirect network printing service
9359mandelspawn [mandelbrot]Parallel mandelbrot spawning program for the X Window System
10081kamandaAmanda backup service over Kerberos
10082/tcpamandaidxAmanda index server
10083/tcpamidxtapeAmanda tape server
20011isdnlogIntegrated Services Digital Network (ISDN) logging system
20012vboxdISDN voice box daemon (vboxd)
22305/tcpwnn4_KrkWnn Korean input system
22289/tcpwnn4_CncWnn Chinese input system
22321/tcpwnn4_TwtWnn Chinese input system (Taiwan)
24554binkpBinkley TCP/IP Fidonet mailer daemon
27374aspAddress Search Protocol
60177tfidoIfmail FidoNet compatible mailer service
60179fidoFidoNet electronic mail and news network