Port 5900: VNC

Remote desktop over VNC, including VM consoles. Often has weak or no passwords. Hypervisor VNC consoles should only be reachable through the panel's proxy.

  • Free
  • No Sign-Up
  • Runs in Your Browser

Examples:

Ports

1 of 41

Port Lookup

Port 5900 at a glance

Port5900
ProtocolTCP
ServiceVNC
Open to the Internet?No, keep it on a private network
See What Is Listeningss -lntup | grep ':5900 '
Test From Outsidenc -zv your-server 5900
Block with UFWufw deny 5900/tcp
Block with nftablesnft add rule inet filter input tcp dport 5900 drop

VNC uses TCP port 5900. Remote desktop over VNC, including VM consoles.

Often has weak or no passwords. Hypervisor VNC consoles should only be reachable through the panel's proxy.

If ss shows something listening on port 5900 on a public address, bind it to 127.0.0.1 or a private interface in the service's own configuration, and drop the port in the firewall as well.

Questions

What is port 5900 used for?
VNC. Remote desktop over VNC, including VM consoles.
Is it safe to open port 5900?
No, keep it on a private network. Often has weak or no passwords. Hypervisor VNC consoles should only be reachable through the panel's proxy.
How do I check if port 5900 is open?
On the server, ss -lntup | grep ':5900 ' shows what is listening. From another machine, nc -zv your-server 5900 shows whether the firewall lets it through.
How do I block port 5900?
With UFW: ufw deny 5900/tcp. With nftables, add a drop rule for dport 5900 in your input chain.

Abuse from open ports on your VMs?

Frabs spots amplification, scans and floods leaving any VM and stops them, without touching your firewall.