Snort mailing list archives
Re: What machine is that... Anyway?
From: Niek Jongerius <niek () dupaco nl>
Date: Mon, 3 Sep 2001 09:33:26 +0200 (CEST)
Well, it would seem to me that if it has an unknown address on your network, you've already spotted it. You would really need something like nmap to make a stab at what type of OS is running on it.
There is another tool for fingerprinting, that often does a better job than nmap. Check out http://www.sys-security.com/html/projects/X.html. Impressive stack analysis! Niek. Bezoek Dupaco tijdens "Infosecurity.nl." op 18 en 19 okt. 2001 in Jaarbeurs Utrecht, Hal 3, stand nummer c29. ******************************************************************************* This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in error please notify the system manager. This footnote also confirms that this email message has been swept by MIMEsweeper for the presence of computer viruses. ******************************************************************************* _______________________________________________ Snort-users mailing list Snort-users () lists sourceforge net Go to this URL to change user options or unsubscribe: https://lists.sourceforge.net/lists/listinfo/snort-users Snort-users list archive: http://www.geocrawler.com/redir-sf.php3?list=snort-users
Current thread:
- Re: Promiscuouls Mode Question, (continued)
- Re: Promiscuouls Mode Question "s10" (Sep 02)
- Re: Promiscuouls Mode Question Jim Kipp (Sep 02)
- Alert_unixsock Anupam Bansal (Sep 02)
- Re: Alert_unixsock Fyodor (Sep 03)
- Message not available
- Re: Alert_unixsock Fyodor (Sep 04)
- Re: Alert_unixsock Fyodor (Sep 04)
- Data structures in rules.h Anupam Bansal (Sep 25)
- -A alert option Anupam Bansal (Sep 02)
- Re: Promiscuouls Mode Question Fyodor (Sep 03)
- Re: Promiscuouls Mode Question Jim Kipp (Sep 03)
- Re: What machine is that... Anyway? Chris Adams (Sep 03)
- Re: What machine is that... Anyway? Fyodor (Sep 03)
