Nmap Development mailing list archives

Re: Draft for hosted cgi


From: Arturo 'Buanzo' Busleiman <buanzo () buanzo com ar>
Date: Fri, 26 May 2006 18:27:43 -0300

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Fyodor wrote:
Because Nmap itself really doesn't know what is "safe" in this
context.  For example, the daemon itself is likely to be adding its

That's why i think that could be configurable.
or at least, "templeatable".

I do like the idea of using SELinux to lock the daemon (and Nmap)

great.

Well, to some degree it just shifts the problem of sanatizing the weird input to Nmap.

Good ol'nmap ;)

- --
Arturo "Buanzo" Busleiman - VPN Mail Project - http://vpnmail.buanzo.com.ar
Consultor en Seguridad Informatica - http://www.buanzo.com.ar

for f in www blog linux-consulting vpnmail; do firefox http://$f.buanzo.com.ar ; done
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFEd3LOAlpOsGhXcE0RAvrxAJ9H3Kd77tZqMPlbIgxMZMNBnufQbwCfSeYa
5o5/E6PORlwi0pazUBUcvv8=
=H0mx
-----END PGP SIGNATURE-----


_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev


Current thread: