Skip to content

Port Scanner

Use this checklist to review common exposure before hardening or auditing infrastructure.

Common ports

Review expected exposure for common services. Open ports are not automatically unsafe, but unnecessary public exposure is a frequent finding.

SSH:22

Restrict to bastion or VPN.

DNS:53

Validate recursion and zone transfers.

HTTP:80

Expect redirect to HTTPS.

HTTPS:443

Check certificate and TLS config.

MySQL:3306

Do not expose to public internet.

PostgreSQL:5432

Use private networking or SSH tunnel.

Redis:6379

Require auth and network isolation.

MongoDB:27017

Bind private IPs and enable auth.

Need infrastructure hardening?

If you want audited network rules, private access patterns, or incident-ready hardening, Zion Tech Group can review or implement it.