Port 5162SNMP Notification over SSH

TCP port 5162 is the IETF-defined SSH transport for receiving SNMP notifications, an uncommon alternative to UDP traps.

transport
tcp

single transport

in transit
encrypted

payload protected on the wire

assignment
official

registered with iana

risk
3/10

caution

lookups
0

rank 993 of 5,397 · top 18%

also known as snmpssh-trap, SNMP over SSH, RFC 5592

Technical Details

what runs on :5162

This is a TCP endpoint for SNMP notifications carried through an SSH transport session, rather than ordinary SNMP trap datagrams over UDP. The SSH session provides the protected channel over which SNMP messages are exchanged; the model uses SSH authentication and encrypted, integrity-protected transport. Port 5162 is the notification port, distinct from port 5161, commonly associated with SNMP over SSH for request/response traffic. The model is specified in RFC 5592 and is rarely encountered compared with SNMP over UDP.

Security Information

exposure of :5162

risk score

3/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

security averages 3.1 across 385 ports — this one sits 0.1 below.

in transit

encrypted

payloads are protected on the wire

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp

every listening transport is another surface to filter at the edge

security overview

SSH protects the traffic in normal use, but the listener still accepts network connections and should generally be limited to expected notification senders or a management network. An attacker can probe the SSH endpoint and attempt authentication or exploit weaknesses in its implementation; use strong SSH authentication and keep the software patched. This is not the conventional UDP port 162 trap service.

the 8 most looked-up other ports in security — 385 ports carry that label.

risk mix of the 8 listed

  • caution100%

2 of 8 encrypted