Greetings! I written a whitepaper that explores some methods for host
discovery, paying the most attention to discovering hosts behind a firewall
with an explicit policy. Probably won't be terribly valueable to the seasoned
pen tester, but I think it lays out the basics and should give you some
ideas. I also wrote a perl script that implements the ideas presented.
You can find the whitepaper at http://moonpie.org/writings/discovery.pdf and
the perl script at http://moonpie.org/tools/discover.tgz
I'm interested in hearing your comments if you have time :)
Best Regards,
- Mark
http://moonpie.org
--------------------------------------------------
For help using this (nmap-hackers) mailing list, send a blank email to
nmap-hackers-help_at_insecure.org . List run by ezmlm-idx (www.ezmlm.org).
Received on Nov 11 2002