Port 7007OpenAFS Basic Overseer Server (BOS)

OpenAFS BOS administration service for supervising and controlling servers and processes.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
7/10

risk

lookups
0

rank 994 of 1,568 · top 63%

also known as afs3-bos, BOS server

Technical Details

what runs on :7007

BOS uses the OpenAFS Rx remote-procedure-call protocol over TCP and UDP. Clients issue BOS management operations such as listing instances, retrieving logs, and controlling processes; authentication commonly uses OpenAFS Kerberos-based Rx security, while deployments may also permit unauthenticated status operations. The standard port is TCP/UDP 7007, alongside OpenAFS services such as fileserver on 7000, callback service on 7001, protection server on 7002, volume location server on 7003, and volume server on 7005.

Security Information

exposure of :7007

risk score

7/ 10risk

treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.

remote access averages 3.9 across 125 ports — this one sits 3.1 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

BOS is a remote administration interface and should be restricted to trusted cell-management hosts rather than exposed to the public internet. An attacker who can authenticate may control supervised processes or alter their configuration; weak, misconfigured, or unauthenticated access can make this especially dangerous. Use appropriate Rx security, firewalling, and host-level access controls.

the 8 most looked-up other ports in remote access — 125 ports carry that label.

risk mix of the 8 listed

  • safe13%
  • caution88%

0 of 8 encrypted