Port 264Border Gateway Multicast Protocol

Border Gateway Multicast Protocol (BGMP) is designed to facilitate scalable multicast routing across multiple autonomous systems in the internet infrastructure. It helps exchange multicast routing information between border routers, enabling efficient delivery of multicast data streams such as audio, video, and other group-based communication across complex networks and domains..

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
4/10

caution

lookups
12,154

rank 323 of 993 · top 32%

Technical Details

what runs on :264

Border Gateway Multicast Protocol (BGMP) extends unicast inter-domain routing principles to multicast, aiming to support large-scale, inter-domain multicast routing. Like BGP for unicast, BGMP enables routers on the edge of different autonomous systems to exchange multicast routing information, handling group membership and efficient data stream management across complex, multi-domain environments.

Technically, BGMP constructs a global shared multicast tree per multicast address prefix. These trees reduce state requirements versus maintaining multiple source-specific trees, and enable scalable routing decisions. BGMP routers leverage address prefix aggregation to keep routing tables scalable, and use a hierarchy similar to inter-domain unicast routing to manage routing policies.

BGMP’s cross-domain routing enhances multicast delivery efficiency by allowing upstream border routers to coordinate packet forwarding, avoid loops, respect administrative boundaries, and reduce redundant network traffic. It interfaces with intra-domain multicast protocols such as PIM within each AS, enabling seamless data flow end-to-end.

Security Information

exposure of :264

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

network services averages 3.9 across 604 ports — this one sits 0.1 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

Common vulnerabilities associated with multicast protocols like BGMP include:

  • Amplification Attacks: Improper filtering can allow attackers to exploit multicast traffic for denial-of-service amplification.
  • Spoofing and Injection: Malicious actors could inject false routing advertisements, disrupting multicast trees or redirecting traffic.
  • Information Disclosure: Multicast routing information could be leaked, exposing network topology details useful in reconnaissance.

To mitigate these risks:

  • Implement Access Controls: Apply prefix filters and route policies to limit accepted multicast advertisements to trusted peers.
  • Authentication: Utilize TCP MD5 signatures or other secure session authentication to prevent unauthorized route injections.
  • Monitor Multicast Traffic: Regularly audit multicast trees and traffic patterns for anomalies indicative of attacks.
  • Limit Multicast Scope: Use administrative scoping features to restrict multicast beyond intended domains or functional areas.

the 8 most looked-up other ports in network services — 604 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted