Networking & Firewall (Ss/Netstat/Iptables/Nftables/Curl)
Stop losing your mind over hidden socket processes
đź§© The Challenge
Ever run netstat or ss, see a port being held open by a process, but the PID column just shows a dash? It’s enough to make you want to throw your monitor out the window because something is clearly listening but the kernel isn’t handing over the credentials.
đź’ˇ The Fix
Use the numeric flag paired with the process flag as root, which forces the kernel to reveal the owner of those stubborn sockets. You’ll save yourself a massive headache next time a port won’t bind because a ghost process is hogging the resource.
sudo ss -lptn 'sport = :80'
⚙️ Why It Works
Running this with sudo permissions elevates your view, allowing the command to reach into the kernel’s process list to match socket inodes with active PIDs that a regular user account simply can’t see.
🚀 Pro-Tip: Alias this to ss-find so you don’t have to remember the flag dance when the heat is on.
Linux Tips & Tricks | © ngelinux.com | 10/3/2026
