Port 6513NETCONF over TLS

TCP 6513 carries NETCONF network-device management sessions protected by TLS.

transport
tcp

single transport

in transit
encrypted

payload protected on the wire

assignment
official

registered with iana

risk
7/10

risk

lookups
0

rank 993 of 5,715 · top 17%

also known as netconf-tls

Technical Details

what runs on :6513

The client connects over TCP and establishes a TLS session before exchanging NETCONF XML messages. NETCONF then uses its hello and RPC message model, with message framing defined by the NETCONF-over-SSH framing specification (RFC 6242). TLS certificate authentication is used to identify the endpoints and support authorization. TCP 6513 is the TLS transport's assigned port; NETCONF over SSH is commonly associated with TCP 830.

Security Information

exposure of :6513

risk score

7/ 10risk

treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.

remote access averages 3.8 across 217 ports — this one sits 3.2 above.

in transit

encrypted

payloads are protected on the wire

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp

every listening transport is another surface to filter at the edge

security overview

A reachable NETCONF endpoint is a network-management interface: an authenticated user may be able to inspect or change device configuration, depending on authorization. TLS protects traffic in transit, but does not make the service safe to expose; restrict it to trusted management networks or VPNs, require strong certificate validation and authorization, and keep implementations current. Internet exposure is generally inappropriate.

the 8 most looked-up other ports in remote access — 217 ports carry that label.

risk mix of the 8 listed

  • safe13%
  • caution88%

0 of 8 encrypted