Port 20: FTP Data

Data channel for active-mode FTP. FTP sends passwords in clear text. Use SFTP (over SSH, port 22) instead.

  • Free
  • No Sign-Up
  • Runs in Your Browser

Examples:

Ports

1 of 41

Port Lookup

Port 20 at a glance

Port20
ProtocolTCP
ServiceFTP Data
Open to the Internet?Only to addresses that need it
See What Is Listeningss -lntup | grep ':20 '
Test From Outsidenc -zv your-server 20
Block with UFWufw deny 20/tcp
Block with nftablesnft add rule inet filter input tcp dport 20 drop

FTP Data uses TCP port 20. Data channel for active-mode FTP.

FTP sends passwords in clear text. Use SFTP (over SSH, port 22) instead.

Allow port 20 only from the addresses that need it: your office, a VPN or a bastion host. The firewall rule generator builds those rules for nftables, iptables and UFW.

Questions

What is port 20 used for?
FTP Data. Data channel for active-mode FTP.
Is it safe to open port 20?
Only to addresses that need it. FTP sends passwords in clear text. Use SFTP (over SSH, port 22) instead.
How do I check if port 20 is open?
On the server, ss -lntup | grep ':20 ' shows what is listening. From another machine, nc -zv your-server 20 shows whether the firewall lets it through.
How do I block port 20?
With UFW: ufw deny 20/tcp. With nftables, add a drop rule for dport 20 in your input chain.

Abuse from open ports on your VMs?

Frabs spots amplification, scans and floods leaving any VM and stops them, without touching your firewall.