Port 8686Sun App Server JMX/RMI

JMX/RMI management traffic for Sun Application Server deployments.

transport
tcp · udp

2 transports registered

in transit
cleartext

payload readable on path

assignment
official

registered with iana

risk
8/10

risk

lookups
0

rank 993 of 4,699 · top 21%

also known as sun-as-jmxrmi, Sun Application Server JMX/RMI

Technical Details

what runs on :8686

The service normally runs over TCP using Java RMI/JRMP and exposes a JMX connector, commonly addressable with a URL such as service:jmx:rmi:///jndi/rmi://host:8686/jmxrmi. The connection uses an RMI registry or connector endpoint followed by Java serialization and JMX operations; depending on the application-server version and configuration, RMI may advertise or open an additional callback/server port. UDP is part of the registry assignment but is not normally used by the JMX/RMI protocol. Port 8686 is associated with JMX, while the same server commonly uses ports such as 4848 for its administration interface and 8080/8181 for HTTP/HTTPS application traffic.

Security Information

exposure of :8686

risk score

8/ 10risk

treat as sensitive. widely scanned and regularly exploited when reachable — restrict it to known sources.

system averages 2.7 across 915 ports — this one sits 5.3 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

official

registered with iana for this service — scanners fingerprint it by number

reachable over

tcp · udp

udp is connectionless — source addresses are trivially spoofed and it is a reflection favourite

security overview

This port should not be exposed to the public Internet. An exposed JMX/RMI connector can disclose server management data and, depending on authentication, authorization, Java version, and application-server configuration, allow administrative operations or dangerous MBean actions; older Java RMI/JMX deployments have also been affected by deserialization and remote-code-execution issues. Restrict it to trusted management networks, require the server's authentication and authorization controls, enable SSL where supported, and account for any additional RMI ports in firewall rules.

the 8 most looked-up other ports in system — 915 ports carry that label.

risk mix of the 8 listed

  • caution100%

0 of 8 encrypted