pen-test
[Top] [All Lists]

Re: NMAP Concurrent Scans

To: Clone <en0lc@yahoo.com>
Subject: Re: NMAP Concurrent Scans
From: "rajat swarup" <rajats@gmail.com>
Date: Sat, 11 Aug 2007 01:06:05 -0400
Cc: pen-test@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=ugomvRZTXE1bffkjpfe8Ewuf44VX8DtXxZrRV4xwkBYTDMWRGeLvsHANq8TgN9QisoNBeTni9+GmFq5uagA78WIw9xyTgHcFrCU0MyWZJQDMcR3yvApMEwtzDwx741kiZU0JDI0nczRvnXNwYBNeuSH+j3V8ZzmSPmiKxOtqS+w=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=BzwrjlJyQvVze+V0DtXJCEpOlCFKCR7zB3f0nq0iMtQjv5zCrG5tHx0Lob3E9K/H1bTd04fFYLh/247P87QQNrmMud3razXSRSNPFaSQEpNsSWkMANcdyIgIoGnmqlqQ1Gsm6hv2EfURTtO+YvXEXm8JPeR4FVpqvKRIxv1aNOc=
In-reply-to: <211117.55584.qm@web44816.mail.sp1.yahoo.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <211117.55584.qm@web44816.mail.sp1.yahoo.com>
Resent-date: Sat, 11 Aug 2007 02:22:15 -0600 (MDT)
Resent-from: pen-test-return-1078484810@securityfocus.com
Resent-message-id: <20070811082215.68196238AE7@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
On 8/10/07, Clone <en0lc@yahoo.com> wrote:
> Hello Everyone,
>
> I'm new to NMAP. I have a curious question that I
> wanted to get expert opinion on...
>
> I was wondering whether running SYN, FIN, XMAS, NULL
> and ACK scans in parallel on a target generate false
> results. Since same client IP is  asking for opening &
> closing a connection on target machine will it not
>  render some ports open and other closed in the
> report?
>
>

No...the TCP connections required are based on the sequence numbers
generated by the source port.  each flow is identified by source port
and sequence numbers.  i'm not sure what's the source port generating
algorithms are used by nmap though.

-- 
Rajat Swarup

http://rajatswarup.blogspot.com/

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>