Port 547DHCPv6 Server

Port 547 is utilized by the Dynamic Host Configuration Protocol version 6 (DHCPv6) server to allocate IPv6 addresses and configuration data dynamically to clients within an IPv6 network environment. It facilitates automatic network configuration, enabling devices to communicate seamlessly without manual IP address assignments..

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
4/10

caution

lookups
14,510

rank 233 of 993 · top 23%

Technical Details

what runs on :547

Port 547 is reserved for DHCPv6 servers, as defined in RFC 3315, facilitating dynamic configuration of IPv6 addresses and network parameters to client devices. The protocol streamlines transitions from manual IPv6 configuration by automating address assignment, default gateway provisioning, DNS server configuration, and other critical settings necessary for IPv6 communication.

Typically, DHCPv6 servers listen on port 547 while clients initiate requests from port 546. DHCPv6 utilizes a client-server message exchange model involving messages such as SOLICIT, ADVERTISE, REQUEST, and REPLY. Communication can occur over either UDP or TCP, although UDP is more commonly used for initial discovery and allocation, with TCP sometimes used for longer or more complex exchanges or relaying.

DHCPv6 supports both Stateless Address Autoconfiguration (SLAAC) integration and Stateful address assignments, allowing flexibility based on the network's addressing schemes. It also supports relay agents to extend service reach across large, segmented networks, making it a critical service for enterprise IPv6 deployments.

Security Information

exposure of :547

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

network services averages 3.9 across 604 ports — this one sits 0.1 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

Common Vulnerabilities:

  • Rogue DHCPv6 servers responding with malicious configurations to redirect or disrupt client traffic (MITM attacks)
  • DHCPv6 starvation attacks where an attacker floods the server with requests, exhausting address pools and causing denial of service
  • Packet spoofing to impersonate legitimate DHCP servers or clients

Common Mitigations:

  • Configure DHCPv6 snooping and filtering on network infrastructure devices to block unauthorized DHCP server responses
  • Implement access control lists and port security to limit DHCP traffic sources
  • Use authentication mechanisms for relay agents and clients if supported
  • Regularly monitor DHCP logs for abnormal behavior indicating potential attacks
  • Segment management and client VLANs to reduce attack surfaces

the 8 most looked-up other ports in network services — 604 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted