Port 716PANA (Protocol for Carrying Authentication for Network Access)

PANA carries network-access authentication messages, including EAP, over UDP.

transport
udp

single transport

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
2/10

safe

lookups
0

rank 994 of 2,043 · top 49%

also known as RFC 5191

Technical Details

what runs on :716

PANA is defined by RFC 5191 and transports Extensible Authentication Protocol (EAP) messages over UDP. A PaC and PAA exchange PANA discovery, authentication, binding, and termination messages; the protocol includes message identifiers, retransmission handling, and attribute-value pairs inside a PANA header. The assigned service uses UDP port 716; PANA is distinct from link-layer EAPOL/802.1X and does not itself provide general application-layer encryption.

Security Information

exposure of :716

risk score

2/ 10safe

routine exposure. this port is rarely the way in on its own — keep it patched and logged and move on.

security averages 3.6 across 254 ports — this one sits 1.6 below.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

PANA should normally be reachable only within the access network or other tightly controlled authentication domain, not broadly from the public Internet. PANA traffic is not encrypted by default, so confidentiality and much of the authentication protection depend on the negotiated EAP method and any subsequently installed network-layer protection; exposed implementations may also be subjected to authentication probing or denial-of-service traffic.

the 8 most looked-up other ports in security — 254 ports carry that label.

risk mix of the 8 listed

  • caution100%

3 of 8 encrypted