Nmap Development mailing list archives

Re: [NSE] small improvement to ftp-anon


From: Gutek <ange.gutek () gmail com>
Date: Wed, 18 Aug 2010 10:22:19 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Le 18/08/2010 07:05, Fyodor a écrit :
The problem with using verbosity is that you can't control one
instance independently.  So even if you just want more files listed,
using -v means you need to put up with a bunch of other extra
verbosity throughout Nmap.  But the problem with using script
arguments is that only a tiny percentage users will take the time to
learn about and set some ftp-anon-specific argument.  A "big lever"
like -v is far more likely to actually be used.

For these reasons, I sometimes think the ideal compromise is to make a
script argument, but vary the default value based on
verbosity/debugging level.  But admittedly that increases complexity.

Cheers,
Fyodor



So, maybe we can add some advises to the default output (or a verbosity
level X), something like
| ftp-anon: Anonymous FTP login allowed (FTP code 230)
|_[Tip of the Day] You could have a directory listing with
- --script-args dirlist=6

This could help spread the word about scripts args.
I don't attach a patch about this right now because I don't want to
flood with too many script proposals, however as it's pretty easy to add
feel free to let me know.

I'm going to a 3 days trip boat/playa but I'll fix whatever you prefer asap.

Have a nice day,

A.G.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.12 (GNU/Linux)
Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org/

iEYEARECAAYFAkxrmDsACgkQ3aDTTO0ha7iJ6wCeNF5FEkggqSB4eyCwct2pgrPZ
urcAn16l9j2z7kqeiU5jOFTPWbCuFwKv
=fRky
-----END PGP SIGNATURE-----
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/


Current thread: