Port 5722Microsoft DFS Replication Service

Windows DFS Replication traffic between servers, commonly using RPC over TCP port 5722.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
6/10

risk

lookups
0

rank 994 of 3,333 · top 30%

also known as msdfsr

Technical Details

what runs on :5722

DFSR uses Microsoft RPC for authenticated communication and replication, with TCP 5722 serving as the traditional fixed service port; the IANA assignment also lists UDP. The RPC endpoint mapper on TCP 135 and, depending on Windows Server version and configuration, dynamic RPC ports may also be required. Windows Server 2003 R2 commonly used TCP 5722 by default, while later releases generally use dynamic RPC ports unless a static port is configured. Replicated content is transferred using DFSR's replication protocol and Remote Differential Compression.

Security Information

exposure of :5722

risk score

6/ 10risk

treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.

network services averages 2.8 across 1,162 ports — this one sits 3.2 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

DFSR should be restricted to trusted replication partners and should not be exposed directly to the Internet. An exposed listener reveals a Windows RPC service and may permit authentication attacks, denial of service, or exploitation of vulnerabilities in the host or RPC stack; compromise of a replication partner can also spread unauthorized changes through replicated data. DFSR traffic should not be assumed to provide application-level confidentiality without additional controls such as IPsec or a VPN.

the 8 most looked-up other ports in network services — 1,162 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted