Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Nmap Development: Nmap Question

Nmap Question

From: IndianZ <indianz_at_indianz.ch>
Date: Sun, 2 May 2004 21:49:43 +0200

Hi List

Is the attached table correct? It's about the answers of packets (when meeting
open/closed/filtered ports) by scanning them with nmap. And can you tell why
it's different (or detected different) when scanning port <1024 or >1024?

                                <1024 >1024
                UDP TCP UDP TCP

OPEN Nothing or syn/ack Response syn/ack
                Response

CLOSED ICMP Port Reset ICMP Port Reset
                Unreachable Unreachable

FILTER Admin prohib Nothing or Nothing Nothing or
                or ICMP Host Admin prohib Admin prohib
                Unreachable

GreetZ from IndianZ

mailto:indianz_at_indianz.ch
http://www.indianz.ch

---------------------------------------------------------------------
For help using this (nmap-dev) mailing list, send a blank email to
nmap-dev-help@insecure.org . List archive: http://seclists.org
Received on May 02 2004

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos