Port 23: Telnet

Unencrypted remote terminal, mostly on old network equipment. Botnets such as Mirai spread by logging in to devices over Telnet with default passwords. Never expose it.

  • Free
  • No Sign-Up
  • Runs in Your Browser

Examples:

Ports

1 of 41

Port Lookup

Port 23 at a glance

Port23
ProtocolTCP
ServiceTelnet
Open to the Internet?No, keep it on a private network
See What Is Listeningss -lntup | grep ':23 '
Test From Outsidenc -zv your-server 23
Block with UFWufw deny 23/tcp
Block with nftablesnft add rule inet filter input tcp dport 23 drop

Telnet uses TCP port 23. Unencrypted remote terminal, mostly on old network equipment.

Botnets such as Mirai spread by logging in to devices over Telnet with default passwords. Never expose it.

If ss shows something listening on port 23 on a public address, bind it to 127.0.0.1 or a private interface in the service's own configuration, and drop the port in the firewall as well.

Questions

What is port 23 used for?
Telnet. Unencrypted remote terminal, mostly on old network equipment.
Is it safe to open port 23?
No, keep it on a private network. Botnets such as Mirai spread by logging in to devices over Telnet with default passwords. Never expose it.
How do I check if port 23 is open?
On the server, ss -lntup | grep ':23 ' shows what is listening. From another machine, nc -zv your-server 23 shows whether the firewall lets it through.
How do I block port 23?
With UFW: ufw deny 23/tcp. With nftables, add a drop rule for dport 23 in your input chain.

Abuse from open ports on your VMs?

Frabs spots amplification, scans and floods leaving any VM and stops them, without touching your firewall.