Home page logo

nmap-dev logo Nmap Development mailing list archives

Re: salt in version probes
From: David Fifield <david () bamsoftware com>
Date: Sat, 15 Jan 2011 21:12:43 -0800

On Fri, Jan 14, 2011 at 09:07:31PM +0200, Toni Ruottu wrote:
Some protocols require client to send a random number that is echoed
back by the server. What kind of version probe should I write for such
protocols? Is it okay to just create a random number and hard code
that into the probe if the server seems to be okay with that?

If a static value works, just use a static value. (And document it so
people don't look for meaning in it.) Anything more complicated needs a

David Fifield
Sent through the nmap-dev mailing list
Archived at http://seclists.org/nmap-dev/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]