Port 5060: SIP

VoIP call signalling. Scanned constantly for toll fraud. Restrict to your providers' addresses.

  • Free
  • No Sign-Up
  • Runs in Your Browser

Examples:

Ports

1 of 41

Port Lookup

Port 5060 at a glance

Port5060
ProtocolTCP/UDP
ServiceSIP
Open to the Internet?Only to addresses that need it
See What Is Listeningss -lntup | grep ':5060 '
Test From Outsidenc -zv your-server 5060
Block with UFWufw deny 5060/tcp; ufw deny 5060/udp
Block with nftablesnft add rule inet filter input meta l4proto { tcp, udp } th dport 5060 drop

SIP uses TCP/UDP port 5060. VoIP call signalling.

Scanned constantly for toll fraud. Restrict to your providers' addresses.

Allow port 5060 only from the addresses that need it: your office, a VPN or a bastion host. The firewall rule generator builds those rules for nftables, iptables and UFW.

Questions

What is port 5060 used for?
SIP. VoIP call signalling.
Is it safe to open port 5060?
Only to addresses that need it. Scanned constantly for toll fraud. Restrict to your providers' addresses.
How do I check if port 5060 is open?
On the server, ss -lntup | grep ':5060 ' shows what is listening. From another machine, nc -zv your-server 5060 shows whether the firewall lets it through.
How do I block port 5060?
With UFW: ufw deny 5060/tcp and ufw deny 5060/udp. With nftables, add a drop rule for dport 5060 in your input chain.

Abuse from open ports on your VMs?

Frabs spots amplification, scans and floods leaving any VM and stops them, without touching your firewall.