Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Doom port 666 open on pfsense?

    Scheduled Pinned Locked Moved Firewalling
    8 Posts 5 Posters 3.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      bluzz44
      last edited by

      Hi everyone,

      I nmapped my pfsense box for the first time today via WAN, and this came up:

      PORT    STATE SERVICE
      22/tcp  open  ssh
      53/tcp  open  domain
      80/tcp  open  http
      443/tcp open  https
      666/tcp open  doom <–------------ :-\

      tcp port 666 (reference to the video game "doom") is opened ?
      That port is also used by many trojans...so I've read?

      1 Reply Last reply Reply Quote 0
      • chpalmerC
        chpalmer
        last edited by

        All WAN side ports on pfSense default as closed. Or actually wont respond to connection attempts. If you are seeing different you either have opened the port(s), or have a device upstream that is actually listening and responding.  Do you have upnp activated on your box?

        Go over to grc.com and do the tests from there and see if they agree with your other findings.

        Triggering snowflakes one by one..
        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

        1 Reply Last reply Reply Quote 0
        • B
          bluzz44
          last edited by

          Device upstream was a strong assumption, and most likely what happened, but I wanted to clarify the 666 port question too.

          Thank you

          1 Reply Last reply Reply Quote 0
          • C
            cmb
            last edited by

            Almost certainly upstream of you, or wrong. You'd have to configure something on port 666, or a port forward, for that to be the case. Nothing in the system will bind to 666, though a variety of services can be configured on any port you want.

            1 Reply Last reply Reply Quote 0
            • N
              Nullity
              last edited by

              Are you using UPnP or NAT-PMP?

              Please correct any obvious misinformation in my posts.
              -Not a professional; an arrogant ignoramous.

              1 Reply Last reply Reply Quote 0
              • B
                bluzz44
                last edited by

                @Nullity:

                Are you using UPnP or NAT-PMP?

                Some of my devices might have used upnp.

                1 Reply Last reply Reply Quote 0
                • chpalmerC
                  chpalmer
                  last edited by

                  @bluzz44:

                  Some of my devices might have used upnp.

                  Just because your devices use upnp does not mean the router will allow it unless you have activated it.  pfSense upnp is not allowed by default.

                  Triggering snowflakes one by one..
                  Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

                  1 Reply Last reply Reply Quote 0
                  • jimpJ
                    jimp Rebel Alliance Developer Netgate
                    last edited by

                    It's probably a package like darkstat that you installed. It wouldn't be open to the WAN unless your WAN rules were overly permissive.

                    Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                    Need help fast? Netgate Global Support!

                    Do not Chat/PM for help!

                    1 Reply Last reply Reply Quote 1
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.