Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Vulnerability Development: Re: Asterisk ignoring replayed libpcap sessions

Re: Asterisk ignoring replayed libpcap sessions

From: Stefano Zanero <s.zanero_at_securenetwork.it>
Date: Mon, 30 Oct 2006 21:09:12 +0100

nnp wrote:
> SIP is carried over UDP.

Yes, that's true, but is it only SIP that you are talking about ? And
even in that case... it's not so simple.

TCPReplay also replays UDP packets, but if for instance those packets
contain nonces, identifiers that can be changed from either side, or
other elements of freshness, you can't expect that a server will react
correctly to a blind REPLAY of a former session... much in the same way
this wouldn't fly with TCP based protocols

Stefano
Received on Nov 01 2006

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos