Port49— TACACS+
TCP 49 ist der registrierte Port für TACACS+ (Terminal Access Controller Access-Control System Plus). Netzwerkgeräte nutzen dieses AAA-Protokoll zur zentralen Authentifizierung, Autorisierung und Protokollierung administrativer Anmeldungen, etwa mit Cisco ISE oder dem offenen TACACS+ daemon.
Registry assignments, software defaults and local listeners are different things. A port number alone does not identify or secure a service.
Configuration and troubleshooting
Prüfen Sie bei TACACS+-Authentifizierungsfehlern die exakte Übereinstimmung von Serveradresse und gemeinsamem Schlüssel auf dem Gerät (ein falsches Zeichen führt zu einem Fehler ohne Meldung), kontrollieren Sie serverseitig das tac_plus-Protokoll oder die ISE-Live-Sitzungen und erlauben Sie ausgehendes TCP 49 vom Gerät. TACACS+ verschleiert den Nutzdatenkörper, anders als RADIUS, das nur das Passwort schützt. Dies erfüllt jedoch keine modernen Verschlüsselungsstandards; nutzen Sie ein vertrauenswürdiges Verwaltungsnetz und wechseln Sie Schlüssel regelmäßig.
Important limitations
Die Nutzdatenverschleierung von TACACS+ bietet weder verlässliche Vertraulichkeit noch Replay-Schutz (RFC 8907 §10 nennt diese Einschränkung ausdrücklich). Umgebungen mit mehreren Herstellern sollten auch RADIUS (1812/1813) oder moderne Alternativen prüfen. Ein schwacher gemeinsamer Schlüssel gefährdet das gesamte System; wechseln Sie ihn regelmäßig und verwenden Sie niemals SNMP-Community-Zeichenfolgen erneut.
Read-only checks: run on the server host
Choose the commands for your OS. Check TCP and UDP separately. No result is not a lasting availability guarantee; inspect host and container separately.
Linux
sudo ss -ltnp 'sport = :49'macOS
sudo lsof -nP -iTCP:49 -sTCP:LISTENWindows PowerShell
Get-NetTCPConnection -LocalPort 49 -State ListenSources and review
Sources checked on:
This review covers the explanations and sources on this page, not your device or every community software entry below.
Software, die diesen Port verwendet (2 Programme)
Community software entries: links are references, not individual verification.
TACACS Terminal Access Control
TerminalControlControlSystem
Authentication Systems
authenticationsystem
Nutzungshinweise
- Prüfe vor der Verwendung von Port 49, ob er bereits von anderen Diensten belegt ist
- Bei Portkonflikten kannst du andere Ports verwenden oder den Dienst beenden, der den Port belegt
Häufig gestellte Fragen
What is port 49 used for?
Port 49 sits in the System category. This page lists the registered purpose and the software commonly associated with it; to see what is actually listening on a specific machine, check the process with ss/netstat.
Is port 49 TCP or UDP?
The registered protocol on this page is TCP. The same number behaves independently on each protocol: TCP may be listening while UDP is idle, so check them separately.
How do I check if port 49 is in use?
On Linux: sudo ss -tlnp 'sport = :49' for an exact port match. On macOS: sudo lsof -nP -iTCP:49 -sTCP:LISTEN. On Windows PowerShell: Get-NetTCPConnection -LocalPort 49 -State Listen. A listener counts as confirmed only when you can see the bind address and process name; without root/admin you will not see other users' processes.
Is port 49 secure? Should I open it in my firewall?
A port number has no inherent security — it depends on whether the listening service is correctly configured and whether it needs exposure at all. Keep loopback/internal-only services firewalled; where public access is required, pair it with source restrictions, VPN or authentication. The caution section on this page lists port-specific risks.
Kurzinfo
- Port
- 49
- Protokoll
- TCP
- Kategorien
- System
- Nutzungsstatus
- 2 Programme nutzen diesen Port
Verwandte Ports
Brauchst du Hilfe?
Wenn du fehlerhafte Angaben findest oder Informationen ergänzen möchtest, reiche bitte eine Korrektur ein.
Korrektur einreichen