Port 2070AH and ESP Encapsulated in UDP

UDP encapsulation for Authentication Header (AH) and Encapsulating Security Payload (ESP) packets.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
1/10

safe

lookups
0

rank 993 of 4,030 · top 25%

also known as ah-esp-encap, AH/ESP over UDP

Technical Details

what runs on :2070

AH and ESP Encapsulated in UDP is registered on port :2070 over tcp and udp to Amy Weaver. We don't have a technical write-up for it beyond the IANA registry entry.

In nmap's internet-wide scan data this port is found open rarely. What's listening is often not the registered service, so check before you assume.

find what's listening on :2070

this machine
# linux
sudo ss -tulpn 'sport = :2070'

# macos / bsd
sudo lsof -nP -i :2070

# windows (then: tasklist /FI "PID eq <pid>")
netstat -ano | findstr :2070
another host
nmap -sV -p T:2070 <host>
sudo nmap -sU -sV -p U:2070 <host>

run it? the handshake, the implementations you meet in the wild and the flags that matter come from the engineers who do.

add technical details

Security Information

exposure of :2070

risk score

1/ 10safe

routine exposure. this port is rarely the way in on its own — keep it patched and logged and move on.

security averages 3.1 across 342 ports — this one sits 2.1 below.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

no security notes recorded for :2070 yet

known exploits, hardening advice, what a compromise looks like — suggest an edit if you know its exposure.

the 8 most looked-up other ports in security — 342 ports carry that label.

risk mix of the 8 listed

  • caution100%

2 of 8 encrypted