Port 3785Bidirectional Forwarding Detection (BFD) Echo
BFD Echo uses UDP port 3785 to test whether packets can traverse a network forwarding path and return.
- transport
- tcp · udp
- in transit
- cleartext
- assignment
- official
- risk
- 2/10
- lookups
- 0
2 transports registered
payload readable on path
registered with iana
safe
rank 993 of 4,920 · top 20%
also known as bfd-echo
1 other service is registered on port 3785. compare all 2 →
Technical Details
what runs on :3785BFD Echo is a forwarding-path liveness function: one system sends UDP echo packets toward its peer, which loops them back through the forwarding plane so the sender can detect loss or delay. The packet format is defined by BFD, and the standard destination port is UDP 3785; BFD control traffic normally uses UDP 3784, while BFD control for multihop paths uses UDP 4784. Although the IANA entry lists TCP as well as UDP, standard BFD Echo operates over UDP, not TCP. This is not typically a conventional application listener: the router or appliance handles packets as part of a configured BFD session.
Security Information
exposure of :3785risk score
2/ 10safe
routine exposure. this port is rarely the way in on its own — keep it patched and logged and move on.
network services averages 2.7 across 1,451 ports — this one sits 0.7 below.
in transit
cleartext
credentials and payloads are readable by anyone on path
assignment
official
registered with iana for this service — scanners fingerprint it by number
reachable over
tcp · udp
udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite
security overview
BFD Echo traffic is not encrypted or authenticated, so it should be limited to trusted, configured peers and filtered at network boundaries rather than exposed broadly to the internet. Injected or unwanted traffic can consume resources or interfere with liveness testing; authentication configured for BFD control traffic does not authenticate Echo packets.
Related Ports
the 8 most looked-up other ports in network services — 1,451 ports carry that label.
| port | service | risk | |||
|---|---|---|---|---|---|
| :9080 | Groove RPC | TCPUDP | Web Services | caution | 70.8k |
| :6543 | Jetnet | UDP | Network Services | caution | 65.3k |
| :5938 | TeamViewer | TCPUDP | Remote Access | caution | 65.0k |
| :8291 | Winbox MikroTik Admin | TCP | Security | caution | 62.9k |
| :3233 | WhiskerControl Protocol | TCPUDP | Network Services | caution | 61.9k |
| :3268 | Microsoft Global Catalog (GC) | TCPUDP | Security | caution | 54.6k |
| :135 | Microsoft EPMAP | TCPUDP | Security | caution | 51.9k |
| :3128 | Tatsoft Default HTTP Proxy | TCP | Web Services | caution | 46.8k |
risk mix of the 8 listed
- caution100%
0 of 8 encrypted