Port 587: Mail Submission

Mail clients sending through their server, with STARTTLS and authentication. The standard port for sending mail from a client; it is not blocked like port 25.

  • Free
  • No Sign-Up
  • Runs in Your Browser

Port Lookup

Port 587 at a glance

Port587
ProtocolTCP
ServiceMail Submission
Open to the Internet?Yes, if you run this service publicly
See What Is Listeningss -lntup | grep ':587 '
Test From Outsidenc -zv your-server 587
Block with UFWufw deny 587/tcp
Block with nftablesnft add rule inet filter input tcp dport 587 drop

Mail Submission uses TCP port 587. Mail clients sending through their server, with STARTTLS and authentication.

The standard port for sending mail from a client; it is not blocked like port 25.

Open port 587 only on servers that run Mail Submission, and keep the software patched: public services are scanned within minutes of going online.

Questions

What is port 587 used for?
Mail Submission. Mail clients sending through their server, with STARTTLS and authentication.
Is it safe to open port 587?
Yes, if you run this service publicly. The standard port for sending mail from a client; it is not blocked like port 25.
How do I check if port 587 is open?
On the server, ss -lntup | grep ':587 ' shows what is listening. From another machine, nc -zv your-server 587 shows whether the firewall lets it through.
How do I block port 587?
With UFW: ufw deny 587/tcp. With nftables, add a drop rule for dport 587 in your input chain.

Abuse from open ports on your VMs?

Frabs spots amplification, scans and floods leaving any VM and stops them, without touching your firewall.