Port 6653OpenFlow
OpenFlow carries control-plane messages between SDN controllers and network switches, usually over TCP.
- transport
- tcp · udp
- in transit
- cleartext
- assignment
- official
- risk
- 8/10
- lookups
- 0
2 transports registered
payload readable on path
registered with iana
risk
rank 993 of 5,749 · top 17%
also known as OpenFlow protocol, 6633
Technical Details
what runs on :6653OpenFlow is the protocol used between an SDN controller and a switch. The IANA assignment lists both TCP and UDP, but normal OpenFlow deployments use a TCP control connection; UDP is not the usual OpenFlow transport. After connecting, the peers exchange OpenFlow Hello messages to establish a protocol version, then use length-framed messages for capability negotiation, events, statistics, and flow-rule updates. Port 6653 is the standard port; older deployments may use TCP port 6633. OpenFlow can use TLS, but encryption is not automatic and many deployments use plain TCP on a restricted management network.
Security Information
exposure of :6653risk score
8/ 10risk
treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.
network services averages 2.6 across 1,735 ports — this one sits 5.4 above.
in transit
cleartext
credentials and payloads are readable by anyone on path
assignment
official
registered with iana for this service — scanners fingerprint it by number
reachable over
tcp · udp
udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite
security overview
An exposed OpenFlow control channel can reveal network state and, depending on the switch and connection configuration, allow an attacker to alter forwarding behavior or disrupt traffic. The protocol does not make encryption or strong peer authentication automatic; use TLS with appropriate certificate checks where supported, and restrict access to trusted controller and switch addresses. Do not expose the port to the public internet.
Related Ports
the 8 most looked-up other ports in network services — 1,735 ports carry that label.
| port | service | risk | |||
|---|---|---|---|---|---|
| :9080 | Groove RPC | TCPUDP | Web Services | caution | 70.8k |
| :6543 | Jetnet | UDP | Network Services | caution | 65.3k |
| :5938 | TeamViewer | TCPUDP | Remote Access | caution | 65.0k |
| :8291 | Winbox MikroTik Admin | TCP | Security | caution | 62.9k |
| :3233 | WhiskerControl Protocol | TCPUDP | Network Services | caution | 61.9k |
| :3268 | Microsoft Global Catalog (GC) | TCPUDP | Security | caution | 54.6k |
| :135 | Microsoft EPMAP | TCPUDP | Security | caution | 51.9k |
| :3128 | Tatsoft Default HTTP Proxy | TCP | Web Services | caution | 46.8k |
risk mix of the 8 listed
- caution100%
0 of 8 encrypted