Common port numbers for infrastructure, homelab, security research, and self-hosted services.
| Port | Proto | Service | Description |
|---|---|---|---|
| 21 | TCP | FTP | File Transfer Protocol control channel (insecure) |
| 22 | TCP | SSH | Secure Shell — remote access |
| 23 | TCP | Telnet | Unencrypted remote shell (insecure) |
| 25 | TCP | SMTP | Simple Mail Transfer Protocol |
| 53 | TCP/UDP | DNS | Domain Name System |
| 67 | UDP | DHCP server | Dynamic Host Configuration Protocol |
| 68 | UDP | DHCP client | DHCP client responses |
| 80 | TCP | HTTP | Hypertext Transfer Protocol |
| 110 | TCP | POP3 | Post Office Protocol v3 (insecure) |
| 111 | TCP/UDP | RPC portmap | ONC RPC portmapper — required for NFS |
| 123 | UDP | NTP | Network Time Protocol |
| 135 | TCP | MS RPC | Microsoft RPC endpoint mapper |
| 139 | TCP | NetBIOS | NetBIOS session service |
| 161 | UDP | SNMP | Simple Network Management Protocol |
| 179 | TCP | BGP | Border Gateway Protocol |
| 389 | TCP/UDP | LDAP | Lightweight Directory Access Protocol |
| 443 | TCP | HTTPS | HTTP over TLS/SSL |
| 445 | TCP | SMB | Server Message Block — common attack vector |
| 636 | TCP | LDAPS | LDAP over TLS/SSL |
| 2003 | TCP | Graphite | Graphite metrics receiver |
| 2049 | TCP/UDP | NFS | Network File System — used for ZFS NFS shares |
| 2376 | TCP | Docker daemon | Docker Remote API (TLS) |
| 2377 | TCP | Docker Swarm | Docker Swarm cluster management |
| 3000 | TCP | Dev / Grafana | Common dev server port; Grafana default |
| 3001 | TCP | Uptime Kuma | Self-hosted uptime monitoring |
| 3306 | TCP | MySQL | MySQL / MariaDB database |
| 3389 | TCP | RDP | Remote Desktop Protocol — common attack surface |
| 4444 | TCP | Metasploit | Metasploit default reverse shell listener |
| 4789 | UDP | VXLAN | Virtual Extensible LAN — Docker overlay networks |
| 4789 | TCP | Shodan bait | Common internet scanner port |
| 5432 | TCP | PostgreSQL | PostgreSQL database |
| 5672 | TCP | RabbitMQ | AMQP message broker |
| 6379 | TCP | Redis | Redis in-memory data store |
| 6443 | TCP | K8s API | Kubernetes API server |
| 8006 | TCP | Proxmox Web | Proxmox VE web management interface |
| 8007 | TCP | Proxmox VNC | Proxmox VE VNC console proxy |
| 8080 | TCP | HTTP alt | Common alternative HTTP port for dev and proxies |
| 8443 | TCP | HTTPS alt | Common alternative HTTPS port |
| 9000 | TCP | Portainer | Docker/K8s management UI; also MinIO API |
| 9090 | TCP | Prometheus | Prometheus metrics scraper |
| 9093 | TCP | Alertmanager | Prometheus alertmanager |
| 9100 | TCP | Node exporter | Prometheus node metrics exporter |
| 9200 | TCP | Elasticsearch | Elasticsearch HTTP API |
| 10250 | TCP | Kubelet | Kubernetes node agent API |
| 10257 | TCP | K8s ctrl mgr | Kubernetes controller manager |
| 10259 | TCP | K8s scheduler | Kubernetes scheduler |
| 11434 | TCP | Ollama | Ollama LLM inference API |
| 27017 | TCP | MongoDB | MongoDB document database |
| 41641 | UDP | Tailscale | Tailscale WireGuard data plane |
49 of 49 ports