Home page logo

pen-test logo Penetration Testing mailing list archives

From: "Rosenau" <rosenau () netsec com br>
Date: Wed, 3 Oct 2001 12:52:51 -0300


Does anybody know a port scanner that could distinguish a "deny" filtered
tcp port (firewall drops packets for the port) from a "reject" filtered tcp
port (firewall returns an ICMP - port unreachable)?.

Nmap seems to report boths cases simply as "filtered". Actually, both cases
are filtered, but when you receive a ICMP, you can be sure that the port is
really filtered. If you do not receive nothing, the port could be filtered,
or packets could have been lost...


This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]