Security Basics mailing list archives
Re: nmap scan results
From: Steven DeFord <security.willworker () gmail com>
Date: Fri, 18 Mar 2005 15:10:50 -0800
On Fri, 18 Mar 2005 14:37:37 -0600, Ju Ne <ddjjembe1 () hotmail com> wrote:
I've been reviewing nmap scan results on my network. If a port comes back as filtered does that mean that it is open, closed, firewalled, or just unknown?
Firewalled, generally, AFAIK. Open: SYN->SYN|ACK->ACK Closed: SYN->RST|ACK->RST Firewalled: SYN-> (timeout) This is also why portscanning firewalled hosts takes a long time (since all the packets have to time out). -- Steven DeFord steve () singingtree com (925) 596-0426
Current thread:
- nmap scan results Ju Ne (Mar 18)
- Re: nmap scan results Steven DeFord (Mar 21)
- Re: nmap scan results Geoff Scott (Mar 21)
- Re: nmap scan results Jacob Bresciani (Mar 21)
- Re: nmap scan results Mark Owen (Mar 21)
- Re: nmap scan results Alvin Oga (Mar 21)
- <Possible follow-ups>
- Re: nmap scan results Ivan Coric (Mar 21)