Port 5723Operations Manager
**Operations Manager** uses TCP port 5723, primarily for communication in Microsoft System Center Operations Manager (SCOM). It enables monitoring agents to connect securely with management servers, facilitating the collection of performance data, health status, and alerts across the IT environment..
- transport
- tcp
- in transit
- cleartext
- assignment
- unofficial
- risk
- 4/10
- lookups
- 8,442
single transport
payload readable on path
used by convention
caution
rank 595 of 993 · top 60%
Technical Details
what runs on :5723Microsoft System Center Operations Manager (SCOM) relies heavily on port 5723/TCP for agent-to-management server communication. The agent installed on monitored systems collects health information, performance counters, and event data, sending this information over port 5723 to the management server. This communication enables centralized monitoring and alerting.
Typically, port 5723 is used in conjunction with the Operations Manager Management Service, which manages authentication, configuration updates, and data collection from agents. It supports secure, certificate-based encryption but can be configured otherwise, depending on system settings and network policies.
Operations Manager connects distributed applications, systems, and devices within an organizational environment. Besides monitoring, port 5723 is involved during agent installation, configuration changes, and policy updates. Proper functioning of this communication channel is crucial for timely detection of system health issues and for orchestrating responses.
Security Information
exposure of :5723risk score
4/ 10caution
worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.
network services averages 3.9 across 604 ports — this one sits 0.1 above.
in transit
cleartext
credentials and payloads are readable by anyone on path
assignment
unofficial
used by convention, not registered — what answers here varies by deployment
reachable over
tcp
every listening transport is another surface to filter at the edge
security overview
Common Vulnerabilities:
- Port 5723 is a potential target for unauthorized lateral movement if access controls are misconfigured.
- Man-in-the-middle attacks could intercept data if encryption is disabled or improperly set.
- Attackers might exploit vulnerabilities in SCOM services to execute arbitrary code or escalate privileges.
Common Mitigations:
- Enforce certificate-based encryption to protect data in transit.
- Restrict access on port 5723 using internal firewalls or network segmentation, allowing only trusted agents.
- Regularly update SCOM components to patch security flaws.
- Monitor the port’s traffic and set up alerts for unusual activity as part of the overall security monitoring strategy.
Related Ports
the 8 most looked-up other ports in network services — 604 ports carry that label.
| port | service | risk | |||
|---|---|---|---|---|---|
| :9080 | Groove RPC | TCPUDP | Web Services | caution | 70.8k |
| :6543 | Jetnet | UDP | Network Services | caution | 65.3k |
| :5938 | TeamViewer | TCPUDP | Remote Access | caution | 65.0k |
| :8291 | Winbox MikroTik Admin | TCP | Security | caution | 62.9k |
| :3233 | WhiskerControl Protocol | TCPUDP | Network Services | caution | 61.9k |
| :3268 | Microsoft Global Catalog (GC) | TCPUDP | Security | caution | 54.6k |
| :135 | Microsoft EPMAP | TCPUDP | Security | caution | 51.9k |
| :3128 | Tatsoft Default HTTP Proxy | TCP | Web Services | caution | 46.8k |
risk mix of the 8 listed
- caution100%
0 of 8 encrypted