Nmap Development mailing list archives
Re: Maybe bug, with -sP und ASA sending RST for denied networks
From: Pluto <pluto () stderr de>
Date: Wed, 24 Oct 2007 12:44:01 +0200
On Mon, Oct 22, 2007 at 04:47:12PM -0700, Fyodor wrote:
On Thu, Oct 18, 2007 at 11:22:01AM +0200, Pluto wrote:Salve, maybe old stuff, just happened to me and can't find something in the docs or elsewhere. When dong the -sP with an ASA in between you and the target, the tcp-syn on port 80 will be answered by a RST from the ASA, thereby making nmap think the host is responding and alive. Of course the results of such a scan are basically useless then. Would it be possible to ignore RST in such a szenario? Or have a command line switch to trigger this?That can be a problem with port 80. You may want to try a different type of ping scan (such as ICMP only) or change the TCP ping probe port(s).
Ok, my error, seems like I do write a very stupid mail every few years, this has been it for this period :( Could have seen in the manpage that the -PE disables the syn on port 80. Gruss -- Pluto - SysAdmin of Hades Free information! Freedom through knowledge. Wisdom for all!! =:-) PGP://0xB4BBB4A9?524CB500A8F3EAA2&6A3E5272F9072A17 ICQ: 286852401 _______________________________________________ Sent through the nmap-dev mailing list http://cgi.insecure.org/mailman/listinfo/nmap-dev Archived at http://SecLists.Org
Current thread:
- Maybe bug, with -sP und ASA sending RST for denied networks Pluto (Oct 20)
- Re: Maybe bug, with -sP und ASA sending RST for denied networks Fyodor (Oct 22)
- Re: Maybe bug, with -sP und ASA sending RST for denied networks Pluto (Oct 24)
- RE: Maybe bug, with -sP und ASA sending RST for denied networks Dario Ciccarone (dciccaro) (Oct 24)
- Re: Maybe bug, with -sP und ASA sending RST for denied networks Pluto (Oct 26)
- RE: Maybe bug, with -sP und ASA sending RST for denied networks Dario Ciccarone (dciccaro) (Oct 26)
- Re: Maybe bug, with -sP und ASA sending RST for denied networks Fyodor (Oct 22)