Port 901Samba Web Admin (SWAT)

The Samba Web Administration Tool (SWAT) is a web-based graphical interface designed to simplify the configuration and management of Samba servers. It provides administrators with an accessible means to configure Samba shares, manage users, and adjust server settings directly from a browser, easing tasks that would otherwise require manual editing of configuration files..

transport
tcp

single transport

in transit
cleartext

payload readable on path

assignment
unofficial

used by convention

risk
4/10

caution

lookups
21,863

rank 101 of 993 · top 10%

1 other service is registered on port 901. compare all 2

Technical Details

what runs on :901

SWAT, or Samba Web Administration Tool, offers a convenient web-based interface to manage Samba servers, which facilitate file and printer sharing between Unix/Linux systems and Windows clients. SWAT is typically accessed via HTTP on port 901, providing real-time graphical management and status information.

The tool allows administrators to configure key aspects of the Samba service—such as shares, security modes, user access, and networking options—without manually editing the smb.conf file. This usability benefit makes SWAT popular for simplifying setup and routine adjustments, especially in small to medium network environments or for those less familiar with Samba's configuration syntax.

However, SWAT is considered deprecated in recent Samba releases and is often disabled or unavailable by default due to security concerns. Many distributions recommend alternative configuration methods or tools, emphasizing direct editing of configuration files or using other graphical administration frameworks.

Security Information

exposure of :901

risk score

4/ 10caution

worth attention. how exposed you are depends on configuration — don't leave it reachable from the internet without a reason.

web services averages 3.9 across 112 ports — this one sits 0.1 above.

in transit

cleartext

credentials and payloads are readable by anyone on path

assignment

unofficial

used by convention, not registered — what answers here varies by deployment

reachable over

tcp

every listening transport is another surface to filter at the edge

security overview

Common Vulnerabilities:

  • SWAT transmits data unencrypted over HTTP, exposing sensitive configuration information and credentials to interception if used over unsecured networks.
  • The tool has historically contained several vulnerabilities, including cross-site scripting (XSS) and buffer overflow issues.
  • If accessible to untrusted networks or unauthorized users, SWAT can be leveraged for privilege escalation or unauthorized configuration changes.

Common Mitigations:

  • Restrict SWAT access exclusively to trusted internal networks and limit access via firewall rules.
  • Run SWAT over an SSH tunnel or behind a secure VPN to ensure encrypted communication.
  • Implement strong authentication controls and avoid enabling SWAT unless necessary.
  • Regularly update the Samba software to address any known vulnerabilities.
  • Disable or uninstall SWAT if it is not in active use, considering its deprecation and security risks.

the 8 most looked-up other ports in web services — 112 ports carry that label.

risk mix of the 8 listed

  • safe13%
  • caution88%

0 of 8 encrypted