Port 13786Symantec NOMDB

Port 13786 is primarily used by Symantec's Network Operations Manager Database (NOMDB), which was formerly a component under VERITAS. It facilitates management communications, data collection, and orchestration tasks within Symantec enterprise backup, storage, and data management solutions..

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
4/10

caution

lookups
6,379

rank 790 of 993 · top 80%

Technical Details

what runs on :13786

Port 13786 services Symantec's Network Operations Manager Database (NOMDB), a component crucial in orchestrating enterprise data protection and management environments. Originally a VERITAS solution before acquisition, it underpins operations such as monitoring backup jobs, managing storage devices, and collecting logs from target endpoints.

NOMDB typically listens over both TCP and UDP, handling requests like status queries, control instructions, and data replication coordination. Its client-server communication model helps in centralizing administrative functions, enabling large-scale management of distributed backup infrastructures.

The port's protocol exchanges include serialized control data and status updates, often embedded within a proprietary communication protocol developed by Symantec. Integrations with other Symantec services may occur over this port as well, facilitating automated workflows and alerting.

Security Information

exposure of :13786

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

databases averages 4.0 across 58 ports — this one sits level with it.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

Common Vulnerabilities:

  • Unauthorized access if strong authentication is not enforced.
  • Man-in-the-middle attacks exploiting unencrypted traffic.
  • Potential for denial of service if unfiltered from public networks.
  • Exploitation through vulnerabilities in out-of-date Symantec/VERITAS management servers.

Common Mitigations:

  • Place management servers within a secured network segment, never exposed to the internet.
  • Implement strict firewall rules, only allowing trusted IPs.
  • Use strong authentication and access controls on management interfaces.
  • Apply latest security patches provided by Symantec to reduce exploitable vulnerabilities.
  • Where possible, tunnel communication over encrypted channels such as VPNs or utilize TLS/SSL if supported.

the 8 most looked-up other ports in databases — 58 ports carry that label.

risk mix of the 8 listed

  • caution100%

1 of 8 encrypted