When I use -S and -e to spoof IP address Nmap does it correctly for
TCP pinging and scanning but does not spoof the IP with ICMP pinging.
Packet-trace option prints 0.0.0.0 as a source address of ICMP packets
(echo, time or netmask) and sniffing shows the default IP of the
scanning machine (not the spoofed one).
(Looking at source for a while resulted in a headache ... I'm sorry ;-)
Martin Mačok
ICT Security Consultant
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Received on Aug 11 2005