When I create a httpd_config_t struct to configure the server behavior, I can set a so called ctrl_port which has a default value of 32768 (same for http and https server). According to the documentation, this port is used to exchange control signals between different components of the server.
I want to know whether it might pose a security risk to the application or if it is possible to interfere with the server behavior by sending udp packets to port 32768.
Code: Select all
httpd_config_t config = {
.task_priority = tskIDLE_PRIORITY+5,
.stack_size = 4096,
.core_id = tskNO_AFFINITY,
.server_port = 80,
.ctrl_port = 32768,
...
}