Port 548Apple Filing Protocol

AFP (Apple Filing Protocol) is Apple's proprietary file services protocol primarily used on macOS systems. Operating over TCP port 548, it facilitates secure and efficient sharing, browsing, and file management within a Macintosh network environment. AFP supports advanced features like Unicode filenames, fine-grained access control, extended file attributes, and file locking, ensuring compatibility and user collaboration within Apple-based networks..

transport
tcp

single transport

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
4/10

caution

lookups
36,798

rank 28 of 993 · top 3%

Technical Details

what runs on :548

Apple Filing Protocol (AFP) is a proprietary network protocol designed by Apple Inc. to enable file sharing and networked storage primarily within Macintosh environments. It historically served as the default file services protocol in macOS, seamlessly integrating with the Finder, offering capabilities such as file browsing, manipulation, and remote mounting of volumes. Operating atop TCP port 548, AFP originally functioned over AppleTalk, with later iterations moving to TCP/IP for improved interoperability and scalability.

AFP supports Unicode file names, which facilitates internationalization and compatibility across different locales. Additionally, it incorporates Access Control Lists (ACLs), allowing detailed permission management at the user and group level. Support for extended file attributes enables rich metadata storage, enhancing user experience and application interoperability. The file locking mechanism ensures consistency by preventing concurrent conflicting edits on shared files.

While AFP was once the primary file-sharing protocol in Apple environments, recent advancements in SMB (Server Message Block) have led Apple to shift towards supporting SMB as the default due to its cross-platform compatibility. Nonetheless, AFP remains critical for legacy system support and specialized Apple workflows requiring its unique functionalities.

Security Information

exposure of :548

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

file transfer averages 4.1 across 114 ports — this one sits 0.1 below.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp

every listening transport is another surface to filter at the edge

security overview

Common Vulnerabilities:

  • Exposure of AFP services to untrusted networks can lead to unauthorized access and divulgence of sensitive data.
  • Lack of encrypted communication channels in AFP (when not tunneled through secure protocols) subjects it to eavesdropping and man-in-the-middle attacks.
  • Legacy AFP implementations may harbor unpatched vulnerabilities including buffer overflows and authentication bypass issues.

Common Mitigations:

  • Restrict AFP service exposure using proper firewalls and access controls, limiting it to trusted inside networks.
  • Where feasible, tunnel AFP connections through encrypted channels such as VPNs or SSH tunnels to protect data integrity and confidentiality.
  • Keep AFP server software and macOS updated to patch known security issues.
  • Migrate towards SMB or other modern, secure protocols when possible, and disable unnecessary AFP services to reduce attack surface.

the 8 most looked-up other ports in file transfer — 114 ports carry that label.

risk mix of the 8 listed

  • caution100%

2 of 8 encrypted