Saltar al contenido

Puerto49— TACACS+

TCP 49 es el puerto registrado para TACACS+ (Terminal Access Controller Access-Control System Plus), el protocolo AAA que usan los dispositivos de red para centralizar la autenticación, autorización y registro de accesos administrativos; por ejemplo, Cisco ISE o el TACACS+ daemon abierto.

Registry assignments, software defaults and local listeners are different things. A port number alone does not identify or secure a service.

Configuration and troubleshooting

Si falla la autenticación TACACS+, verifique que la dirección del servidor y la clave compartida coincidan exactamente en el dispositivo (un solo carácter incorrecto provoca un fallo sin aviso), consulte el registro de tac_plus o las sesiones activas de ISE en el servidor y permita TCP 49 saliente desde el dispositivo. TACACS+ ofusca el cuerpo del mensaje, a diferencia de RADIUS, que solo protege la contraseña, pero no cumple los estándares modernos de cifrado; úselo en una red de administración de confianza y rote las claves periódicamente.

Important limitations

La ofuscación de datos de TACACS+ no ofrece confidencialidad fiable ni protección contra repetición (RFC 8907 §10 señala expresamente esta limitación). Los entornos de varios fabricantes deberían evaluar también RADIUS (1812/1813) o alternativas modernas. Una clave compartida débil compromete todo el sistema; rótela y nunca reutilice cadenas SNMP community.

Read-only checks: run on the server host

Choose the commands for your OS. Check TCP and UDP separately. No result is not a lasting availability guarantee; inspect host and container separately.

Linux

sudo ss -ltnp 'sport = :49'

macOS

sudo lsof -nP -iTCP:49 -sTCP:LISTEN

Windows PowerShell

Get-NetTCPConnection -LocalPort 49 -State Listen

Sources and review

Sources checked on:

This review covers the explanations and sources on this page, not your device or every community software entry below.

Software que utiliza este puerto (2 programas)

Community software entries: links are references, not individual verification.

TACACS Terminal Access Control

TerminalControlControlSystem

Authentication Systems

authenticationsystem

Recomendaciones de uso

  • Antes de utilizar el puerto 49, comprueba que no esté ocupado por otros servicios
  • Si encuentras conflictos de puertos, considera utilizar otros puertos o detener el servicio que lo ocupa

Preguntas frecuentes

What is port 49 used for?

Port 49 sits in the System category. This page lists the registered purpose and the software commonly associated with it; to see what is actually listening on a specific machine, check the process with ss/netstat.

Is port 49 TCP or UDP?

The registered protocol on this page is TCP. The same number behaves independently on each protocol: TCP may be listening while UDP is idle, so check them separately.

How do I check if port 49 is in use?

On Linux: sudo ss -tlnp 'sport = :49' for an exact port match. On macOS: sudo lsof -nP -iTCP:49 -sTCP:LISTEN. On Windows PowerShell: Get-NetTCPConnection -LocalPort 49 -State Listen. A listener counts as confirmed only when you can see the bind address and process name; without root/admin you will not see other users' processes.

Is port 49 secure? Should I open it in my firewall?

A port number has no inherent security — it depends on whether the listening service is correctly configured and whether it needs exposure at all. Keep loopback/internal-only services firewalled; where public access is required, pair it with source restrictions, VPN or authentication. The caution section on this page lists port-specific risks.

Información rápida

Puerto
49
Protocolo
TCP
Categorías
Sistema
Estado de uso
2 programas que lo utilizan

¿Necesitas ayuda?

Si encuentras información incorrecta o necesitas añadir más, envíanos una corrección.

Enviar una corrección