Port 901Samba Web Admin (SWAT)
The Samba Web Administration Tool (SWAT) is a web-based graphical interface designed to simplify the configuration and management of Samba servers. It provides administrators with an accessible means to configure Samba shares, manage users, and adjust server settings directly from a browser, easing tasks that would otherwise require manual editing of configuration files..
- transport
- tcp
- in transit
- cleartext
- assignment
- unofficial
- risk
- 4/10
- lookups
- 21,863
single transport
payload readable on path
used by convention
caution
rank 101 of 993 · top 10%
1 other service is registered on port 901. compare all 2 →
Technical Details
what runs on :901SWAT, or Samba Web Administration Tool, offers a convenient web-based interface to manage Samba servers, which facilitate file and printer sharing between Unix/Linux systems and Windows clients. SWAT is typically accessed via HTTP on port 901, providing real-time graphical management and status information.
The tool allows administrators to configure key aspects of the Samba service—such as shares, security modes, user access, and networking options—without manually editing the smb.conf file. This usability benefit makes SWAT popular for simplifying setup and routine adjustments, especially in small to medium network environments or for those less familiar with Samba's configuration syntax.
However, SWAT is considered deprecated in recent Samba releases and is often disabled or unavailable by default due to security concerns. Many distributions recommend alternative configuration methods or tools, emphasizing direct editing of configuration files or using other graphical administration frameworks.
Security Information
exposure of :901risk score
4/ 10caution
worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.
web services averages 3.9 across 112 ports — this one sits 0.1 above.
in transit
cleartext
credentials and payloads are readable by anyone on path
assignment
unofficial
used by convention, not registered — what answers here varies by deployment
reachable over
tcp
every listening transport is another surface to filter at the edge
security overview
Common Vulnerabilities:
- SWAT transmits data unencrypted over HTTP, exposing sensitive configuration information and credentials to interception if used over unsecured networks.
- The tool has historically contained several vulnerabilities, including cross-site scripting (XSS) and buffer overflow issues.
- If accessible to untrusted networks or unauthorized users, SWAT can be leveraged for privilege escalation or unauthorized configuration changes.
Common Mitigations:
- Restrict SWAT access exclusively to trusted internal networks and limit access via firewall rules.
- Run SWAT over an SSH tunnel or behind a secure VPN to ensure encrypted communication.
- Implement strong authentication controls and avoid enabling SWAT unless necessary.
- Regularly update the Samba software to address any known vulnerabilities.
- Disable or uninstall SWAT if it is not in active use, considering its deprecation and security risks.
Related Ports
the 8 most looked-up other ports in web services — 112 ports carry that label.
| port | service | risk | |||
|---|---|---|---|---|---|
| :8888 | Sun Answerbook & Alt HTTP | TCP | Web Services | caution | 123.9k |
| :8000 | Intel Remote Desktop / Alternate HTTP Port | TCP | Web Services | safe | 84.3k |
| :8888 | NewsEDGE | TCPUDP | Web Services | caution | 83.3k |
| :8888 | HTTP Alternative Port | TCP | Web Services | caution | 76.5k |
| :8888 | GNUmp3d Streaming HTTP | TCP | Web Services | caution | 76.3k |
| :9080 | Groove RPC | TCPUDP | Web Services | caution | 70.8k |
| :8881 | Atlasz Secure Server | TCP | Web Services | caution | 67.6k |
| :80 | HTTP | TCPUDP | Web Services | caution | 67.3k |
risk mix of the 8 listed
- safe13%
- caution88%
0 of 8 encrypted