Port 221Berkeley rlogind with SPX authentication

Berkeley rlogind remote-login service using SPX authentication on TCP and UDP port 221.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
7/10

risk

lookups
0

rank 993 of 5,288 · top 19%

also known as fln-spx

Technical Details

what runs on :221

The registry assigns both TCP and UDP 221 to this service, although rlogind is fundamentally a session-oriented, byte-stream remote-login protocol and implementations would normally favor a connection-oriented transport. A Berkeley rlogin-style exchange typically begins with NUL-terminated local username, remote username, and terminal/speed fields, followed by bidirectional terminal data and control signaling; this variant adds SPX authentication. Standard Berkeley rlogin is commonly associated with TCP 513, so port 221 should be treated as a legacy or implementation-specific placement rather than the normal rlogin default.

Security Information

exposure of :221

risk score

7/ 10risk

treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.

remote access averages 3.8 across 207 ports — this one sits 3.2 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

rlogin-style services are generally unencrypted and historically rely on host-based trust such as .rhosts rather than strong user authentication. An exposed listener can disclose terminal traffic and permit unauthorized remote access if its trust configuration is weak; it should not be exposed directly to the Internet and should be replaced or isolated behind a secure management channel.

the 8 most looked-up other ports in remote access — 207 ports carry that label.

risk mix of the 8 listed

  • safe13%
  • caution88%

0 of 8 encrypted