Port 4128NuFW

Port for the NuFW decision delegation protocol used to delegate firewall access decisions.

transport
tcp · udp

2 transports registered

in transit
encrypted

payload protected on the wire

assignment
official

registered with iana

risk
4/10

caution

lookups
0

rank 993 of 4,272 · top 23%

Technical Details

what runs on :4128

NuFW uses this port for its decision-delegation control protocol: a NuFW firewall component submits connection or packet authorization context and receives the corresponding policy decision from the NuFW authentication service. The protocol is implementation-specific rather than a generic text service; TCP is the normal transport for the persistent component-to-component exchange, while the IANA registration also covers UDP. NuFW deployments commonly protect this inter-component communication with TLS/certificate-based authentication, and the listening port can be changed in configuration.

Security Information

exposure of :4128

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

security averages 3.1 across 347 ports — this one sits 0.9 above.

in transit

encrypted

payloads are protected on the wire

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

This port should normally be reachable only between trusted NuFW components, not from the public Internet. Exposure could allow probing of the firewall's authorization service and, if authentication or certificate validation is misconfigured, attempts to influence firewall decisions; restrict it with network policy and use NuFW's authenticated encrypted channel.

the 8 most looked-up other ports in security — 347 ports carry that label.

risk mix of the 8 listed

  • caution100%

2 of 8 encrypted