Port 18184OPSEC LEA

Check Point OPSEC LEA carries authenticated log-export traffic from Security Management Servers to monitoring clients.

transport
tcp · udp

2 transports registered

in transit
encrypted

payload protected on the wire

assignment
official

registered with iana

risk
4/10

caution

lookups
0

rank 994 of 3,456 · top 29%

also known as Check Point LEA, Log Export API

Technical Details

what runs on :18184

The IANA assignment covers TCP and UDP port 18184, although OPSEC LEA deployments conventionally use TCP. The protocol uses a client/server session with Check Point OPSEC authentication and SSL/TLS protection in normal deployments, then transfers log records from the management server to the LEA client. Exact authentication and certificate settings depend on the Check Point release and OPSEC application configuration.

Security Information

exposure of :18184

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

security averages 3.2 across 321 ports — this one sits 0.8 above.

in transit

encrypted

payloads are protected on the wire

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

LEA exposes security and audit logs, which can contain sensitive network, user, and policy information. It should normally be restricted to authorized collectors and management networks rather than exposed to the internet; an attacker would primarily gain information through unauthorized access or exploit product-specific management-server weaknesses.

the 8 most looked-up other ports in security — 321 ports carry that label.

risk mix of the 8 listed

  • caution100%

3 of 8 encrypted