Port Scanner
Use this checklist to review common exposure before hardening or auditing infrastructure.
Common ports
Review expected exposure for common services. Open ports are not automatically unsafe, but unnecessary public exposure is a frequent finding.
SSH:22
Restrict to bastion or VPN.
DNS:53
Validate recursion and zone transfers.
HTTP:80
Expect redirect to HTTPS.
HTTPS:443
Check certificate and TLS config.
MySQL:3306
Do not expose to public internet.
PostgreSQL:5432
Use private networking or SSH tunnel.
Redis:6379
Require auth and network isolation.
MongoDB:27017
Bind private IPs and enable auth.
Need infrastructure hardening?
If you want audited network rules, private access patterns, or incident-ready hardening, Zion Tech Group can review or implement it.