Port monitoring for the services that are not websites

Uptime Tracker TCP port monitors open a connection to host:port on a schedule and alert you when the service stops accepting connections. TCP checks are free on every plan; Team adds protocol-aware checks for gRPC health, SMTP and IMAP.

Free plan · no credit card · or compare plans

[ 001 ]

Any TCP service

Check SSH, databases, game servers, MQTT brokers, VPN endpoints or custom daemons.

[ 002 ]

Free on every plan

TCP port monitors count as standard monitors and are included in Free.

[ 003 ]

gRPC health protocol

Team checks grpc.health.v1 over TLS, not just whether the port is open.

[ 004 ]

Mail server checks

Team verifies SMTP and IMAP banners and TLS without logging in or sending mail.

[ 005 ]

Same alerting

Port failures use the same confirmation, incidents and channels as website checks.

What a TCP port check tells you

A TCP port check confirms that a service is listening and accepting connections at a given host and port. Uptime Tracker opens a TCP connection to host:port, and if the connection is refused or times out, the check fails.

That simple test catches a lot:

  • The process crashed or was not restarted after a reboot.
  • A firewall or security group change blocked the port.
  • The host itself is down or unreachable.
  • The service is so overloaded it stops accepting new connections.

Common targets include SSH on port 22, database proxies, game servers, MQTT brokers, SIP servers, custom TCP APIs and VPN endpoints that listen on TCP. Each check records connection time, which also gives you a rough view of network latency to the host.

A port check does not prove the application behind the port is healthy. A database can accept connections and still reject every query. Where possible, pair a port monitor with a deeper check: an API monitor on an HTTP health endpoint, or a heartbeat from a script that runs a real query and pings on success.

Monitors must target public addresses; private and internal network addresses are blocked for security. Exposing a database port to the internet just to monitor it is not recommended; use a heartbeat from inside the network instead.

gRPC health checks

On the Team plan, Uptime Tracker can check gRPC services using the standard gRPC health checking protocol, grpc.health.v1, over TLS. Instead of only confirming the port is open, it asks the service itself whether it is serving.

The health protocol is the same one used by load balancers and orchestrators, so many gRPC frameworks already implement it or can add it with a few lines. If your service reports SERVING, the check passes; if it reports anything else or does not respond, the check fails and the usual failure confirmation applies.

Why this is better than a TCP check for gRPC:

  • A gRPC server can accept connections while its dependencies are down. A health check lets the service report that.
  • TLS is negotiated as part of the check, so certificate problems surface too.
  • The result reflects what your clients experience when they make real calls.

Uptime Kuma users can import existing gRPC monitors from a JSON backup; they are mapped automatically along with HTTP, port, ping, DNS and push monitors. See monitoring for developers for more on importing and automating monitors.

SMTP and IMAP mail server checks

On the Team plan, SMTP and IMAP checks confirm that your mail servers are answering correctly and negotiating TLS, without ever logging in or sending a message. They are designed for teams that run their own mail infrastructure or depend on a mail relay.

Each check connects to the server, reads the greeting banner, and verifies TLS, either by upgrading the connection with STARTTLS or by connecting with implicit TLS on the dedicated secure port. If the banner is missing, the server refuses the connection, or the TLS negotiation fails, the check fails.

ProtocolCommon portsTLS mode
SMTP submission587STARTTLS
SMTP over TLS465Implicit TLS
IMAP143STARTTLS
IMAP over TLS993Implicit TLS

Because these checks never authenticate, you do not need to store mailbox credentials in Uptime Tracker. Combine them with DNS monitoring of your MX and TXT records to catch the other common cause of mail delivery problems: a DNS change that breaks routing or sender authentication.

Set up a port monitor

A TCP port monitor takes under a minute to set up on any plan.

  1. Sign in and create a new monitor with the type TCP port.
  2. Enter the public hostname or IP address and the port number, for example game.example.com and 25565.
  3. Choose a check interval: every 5 minutes on Free, 60 seconds on Starter or 30 seconds on Team.
  4. Pick the alert channels and add a tag so routing rules can treat the monitor appropriately.
  5. Save, then confirm the first check shows as up with a connection time.

For gRPC, SMTP or IMAP on Team, choose that monitor type instead and enter the host and port.

Group related monitors in a project if you run services for several customers or environments. Projects are available on every plan: 1 on Free, 3 on Starter and 10 on Team. Tags such as database or game make it easy to route port alerts separately from website alerts, for example sending game-server outages to a Discord channel your players can see.

What's included on each plan

TCP port checks are free on every plan; protocol-aware gRPC, SMTP and IMAP checks are part of Team.

FreeStarterTeam
TCP port monitorsYesYesYes
Ping (ICMP) monitorsNoYesYes
gRPC health checks over TLSNoNoYes
SMTP and IMAP banner and TLS checksNoNoYes
Standard monitors21050
Fastest interval5 minutes60 seconds30 seconds

For a service or two, TCP checks on Free are enough to know whether something is listening. Upgrade to Starter for 10 monitors, 60-second checks and ping monitors, or to Team when you run gRPC services or your own mail servers and want the protocol itself verified. Team also adds monitor dependencies, so a host outage produces one alert rather than one per port. TCP, gRPC, SMTP and IMAP monitors all count toward the same standard monitor limit.

For host-level reachability, see ping monitoring. All limits are on the pricing page.

FAQ

Frequently asked questions

How do I monitor if a port is open?

Create a TCP port monitor in Uptime Tracker with the public host and port number. It opens a TCP connection on every check and alerts you after two consecutive failures. TCP port monitors are included on the Free plan.

Can I monitor a Minecraft or other game server?

Yes. Game servers that listen on a public TCP port can be monitored with a TCP port check, for example port 25565 for a default Minecraft Java server. You are alerted when the server stops accepting connections.

Can Uptime Tracker check gRPC services?

Yes, on the Team plan. It uses the standard grpc.health.v1 health checking protocol over TLS, so the service reports whether it is serving rather than just whether the port is open.

Does the SMTP check send test emails?

No. SMTP and IMAP checks read the server banner and verify STARTTLS or implicit TLS, but never authenticate or send mail. They are available on the Team plan.

Can I monitor a database port on a private network?

Not directly, because monitors cannot target private or internal addresses. Run a small script inside your network that queries the database and pings an Uptime Tracker heartbeat monitor on success.

Uptime Tracker

Start monitoring in under five minutes

Start on the free plan — commercial use allowed. No credit card, no password, just your email address.

  • Free forever plan
  • No credit card
  • Cancel anytime