Nmap Development mailing list archives

Exp Features: -oP (pcap output format) and --version-ports


From: Kris Katterjohn <katterjohn () gmail com>
Date: Mon, 28 Apr 2008 13:18:20 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hey everyone,

I've committed a couple of new features in my branch (/nmap-exp/kris):

1) -oP is a new output option to save sent/received raw IP packets and
Ethernet frames in pcap format for use with pcap-capable programs like
Wireshark.  I posted a less-complete version of this patch (only working
with raw IP packets) on nmap-dev a few months ago, but this one is much
better.  Systems which use the raw packet functions in tcpip.cc
(ping/port scanning, OS detection, Traceroute, etc) should all be saved
with this option.  However, it doesn't work with connect() scans or
Nsock-utilizing systems (such as parallel DNS resolution and NSE).

2) The --version-ports patch I've applied is the same as in the nmap-dev
email here[1].

If you could try these out in my branch and let me know how it goes and
what you think, I'd appreciate it.  If you like them, be sure to post it
up and they might get into Nmap proper.

Thanks,
Kris Katterjohn

[1] http://seclists.org/nmap-dev/2008/q1/0291.html
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
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=jOxh
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: