Re: ipfw muckt (?)

From: Dominik Brettnacher <domi(at)saargate.de>
Date: Fri, 15 Mar 2002 08:59:45 +0100 (CET)

On Fri, 15 Mar 2002, universe wrote:

> nmap kanns kaum sein, der saint udp_scan liefert ebenfalls offene ports
> zurueck.
>
> versteh ich nicht. was mach ich falsch?

Ich glaube, das verhalten ist so, wie z.B. in der Manpage definiert:

       -sU UDP scans: This method is used to determine which
              UDP (User Datagram Protocol, RFC 768) ports are
              open on a host. The technique is to send 0 byte
              udp packets to each port on the target machine. If
              we receive an ICMP port unreachable message, then
              the port is closed. Otherwise we assume it is
              open.

Da ein ICMP port unreachable durch die deny-Regel verhindert wird, wird
der Port also als offen angezeigt.

-- 
Dominik
"Democracy is, at its base, nothing but a substitute for violent conflict."
			-- T. Swiss on Slashdot
To Unsubscribe: send mail to majordomo(at)de.FreeBSD.org
with "unsubscribe de-bsd-questions" in the body of the message
Received on Fri 15 Mar 2002 - 09:00:22 CET

search this site