Home page logo

nmap-dev logo Nmap Development mailing list archives

Re: SCTP scanme system at scanme.csnc.ch
From: Fyodor <fyodor () insecure org>
Date: Sat, 13 Jun 2009 13:46:45 -0700

On Fri, Jun 12, 2009 at 11:16:08PM +0000, Brandon Enright wrote:

My results are coming back filtered:

I get the same for SCTP (tried from my home DSL line and from a
colocated machine), though I can ICMP ping the host.  Here is what I get:

# nmap -sY -T4 --reason scanme.csnc.ch
Starting Nmap 4.85BETA10 ( http://nmap.org ) at 2009-06-13 13:40 PDT
All 42 scanned ports on fury.ustdmz.roe.ch ( are filtered because of 42 no-responses
Nmap done: 1 IP address (1 host up) scanned in 10.54 seconds

I did a manual traceroute with nmap --ttl --packet-trace as Brandon
suggested, and my SCTP packets also make it all the way to
adsl-130-143.dsl.init7.net ( before being apparently
dropped.  That (ttl 9) is last hop before I can reach them machine
with ping packets using ttl 10.

Both of my tests were using Linux.  The colocated machine doesn't have
NAT or anything else in the way.


Sent through the nmap-dev mailing list
Archived at http://SecLists.Org

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]