Penetration Testing mailing list archives

Re: Interesting challenge


From: "Clint Bodungen" <clint () secureconsulting com>
Date: Fri, 30 Jan 2004 12:19:51 -0600

Is the simple firewall rejecting ICMP?  Nessus and Retina won't continue
probing a node if you have the ICMP check (or ping host) flag set and it
doesn't get a response.


----- Original Message ----- 
From: "Sanjay K. Patel" <sanjay.patel () rexwire com>
To: <pen-test () securityfocus com>
Sent: Friday, January 30, 2004 10:42 AM
Subject: Interesting challenge





We are doing a pen test for a client and have run into a interesting
situation. The client has a server running IIS and Exchange we can get to
it
through a browser but when we try to run Nessus or Eeye Retina against it,
neither product can find the server. The client is not running any IDS
system has a simple firewall. A port scan revels no open port though port
80
is open since the server is serving pages.


SKP



--------------------------------------------------------------------------
-
--------------------------------------------------------------------------
--




---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: