Chinaunix首页 | 论坛 | 博客
  • 博客访问: 26200
  • 博文数量: 10
  • 博客积分: 297
  • 博客等级: 二等列兵
  • 技术积分: 110
  • 用 户 组: 普通用户
  • 注册时间: 2010-04-24 21:20
文章分类
文章存档

2010年(10)

最近访客

分类:

2010-05-04 09:01:35

Will an nmap Operating System scan work through a firewall?
OS Fingerprinting against a filtered device is certainly a challenge. In most cases where a firewall or packet filter is in place, the OS fingerprint won't be very accurate. This is because the OS fingerprinting process needs to find at least one open port and one closed port to make the resulting fingerprint worthwhile.

Nmap only sends eight frames to complete an OS scan. Four of the frames are TCP frames to an open port, three are TCP frames to a closed port, and one is a UDP frame to a closed port. The resulting operating system determination is based on the responses of these eight tests. If we only get to run four or five of the eight tests, the fingerprinting obviously won't be as accurate. We need to determine which TCP ports are open or closed prior to the OS scan, which is why nmap requires a TCP-based scan to run along with the operating system tests.

阅读(883) | 评论(1) | 转发(0) |
0

上一篇:TCPDump flags

下一篇:Fdisk vs Parted

给主人留下些什么吧!~~

安何2010-05-22 22:25:51