Nmap Development mailing list archives

Re: [RFC] Redoing Ncat's Proxy Options


From: Kris Katterjohn <katterjohn () gmail com>
Date: Sat, 11 Oct 2008 00:39:51 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 10/10/2008 02:47 PM, Dirk Loss wrote:
Hi Kris,


Hey Dirk,

I really like your ideas for redoing Ncat's proxy options:


Awesome :)

Sounds good to me.  I actually prefer defaulting to HTTP, but I figured more
people used SOCKS so defaulting to that would be better.

I have no real preference on whether to use SOCKS5 or HTTP as the default.


I thought of another reason why defaulting to HTTP could be better: the server
part.  Since the only proxy server currently available is HTTP, only -lX is
needed to use it.

But I would prefer the parameters 'socks4' and 'socks5' over '4' and 
'5'. IMHO the longer forms are more readable, more consistent with 
'http' and therefore easier to remember. Moreover, I think "-X socks5" 
is quite self-documenting while "-X 5" is not. And 'socks4' and 'socks5' 
are still quite short and easy to type.


Fair enough, I suppose having them both can't hurt any.

  -x, --proxy
  -X, --proxy-type
  -P, --proxy-auth

IMHO that's a good idea. I don't really like the "user:pass@" style or 
something like "--x-auth".


Cool, I'll probably stick to that then.  Oh, but have a look at [1] if you can
since I kinda forgot about the existing -x option... :)

It's just that mixing the short forms with --proxy-auth, or the long forms
with --x-auth, don't go well together IMO,

I guess most people will either use the long forms or the short forms, 
so that would be no real issue.


Oh, I was actually just referring to the idea of having just the short option
names -x and -X (not --proxy, etc) and a long --x-auth (no -P) or whatever. So
yeah, having them all available is better in this respect.

Regards
Dirk


Thanks!,
Kris Katterjohn

[1] http://seclists.org/nmap-dev/2008/q4/0163.html

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
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=yw6I
-----END PGP SIGNATURE-----

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: