Port 6081Geneve

Geneve carries virtual network traffic between hosts over UDP, commonly as an overlay data-plane tunnel.

transport
udp

single transport

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
5/10

caution

lookups
0

rank 993 of 5,618 · top 18%

also known as Generic Network Virtualization Encapsulation

Technical Details

what runs on :6081

Geneve uses UDP destination port 6081 (RFC 8926). It has no connection handshake: each datagram carries an 8-byte base header, optional variable-length TLV options, and an encapsulated network packet. The header includes a 24-bit VNI to identify the virtual network; implementations commonly use varying UDP source ports to support underlay ECMP. Tunnel endpoints and their overlay configuration are established by a separate control plane. Geneve does not encrypt or authenticate the encapsulated traffic.

Security Information

exposure of :6081

risk score

5/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

network services averages 2.6 across 1,684 ports — this one sits 2.4 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

Do not expose Geneve to arbitrary internet hosts. An reachable tunnel endpoint may accept unauthenticated encapsulated packets, allowing traffic injection into an overlay or exposing the decapsulation implementation to malformed-packet attacks. Restrict UDP/6081 to trusted tunnel endpoints and use separate controls, such as underlay filtering and workload-level security, to protect the overlay.

the 8 most looked-up other ports in network services — 1,684 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted