Port 5065EPICS Channel Access Repeater

UDP 5065 is the default EPICS Channel Access repeater port, used to distribute server beacons to clients.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
2/10

safe

lookups
0

rank 993 of 5,362 · top 19%

also known as ca-2, EPICS CA repeater

Technical Details

what runs on :5065

EPICS Channel Access (CA) uses UDP for discovery and TCP for client-to-IOC connections. The CA repeater normally listens on UDP 5065: clients register their addresses with it, and it forwards server beacon messages to registered clients. It is a discovery helper, not the service that carries normal process-variable reads and writes; those connections typically go to TCP 5064. Although IANA lists both TCP and UDP for this assignment, the standard repeater use is UDP, and TCP 5065 is not a usual CA endpoint.

Security Information

exposure of :5065

risk score

2/ 10safe

routine exposure. this port is rarely the way in on its own — keep it patched and logged and move on.

network services averages 2.6 across 1,614 ports — this one sits 0.6 below.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

The repeater is not itself the usual control or read/write endpoint, so an exposed UDP 5065 does not by itself imply that an IOC is remotely controllable. CA traffic is generally unencrypted and lacks strong built-in access control, however, so reachable IOCs—typically on TCP 5064—can expose sensitive process data or permit writes depending on configuration. Keep CA discovery and IOC ports on trusted control-system networks rather than exposing them to the internet.

the 8 most looked-up other ports in network services — 1,614 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted