Skip to main content

Network Ports

FRP Auto Deploy publishes TCP services. Default published service range: 6000-6098.

Port direction at a glance

The remote client normally initiates its connections outbound. The server/public firewall must still accept the required inbound endpoints.

Direct mode

TCP/22 is optional for your own administrative SSH access to the server and is not part of the FRP Auto Deploy product path.

Enterprise single-443

In single-443 mode, allocator backend 6099 and FRP backend 7000 are not intended to be Internet-exposed.

NAT deployments

The public control/enrollment ports may be translated by an external firewall. Example Direct mapping:
Published service ports should normally stay 1:1 so the persistent FRP Auto Deploy reservation matches the port users actually connect to.

TCP only

Current stable core scope:
UDP is not part of the current stable core product scope.
Last modified on September 7, 2026