Nmap Development mailing list archives

Re: Fragmentation scan


From: Alan Jenkins <aj504 () york ac uk>
Date: Sun, 17 Oct 2004 20:32:33 +0100

On Wed, Oct 06, 2004 at 09:05:28PM +0100, Alan Jenkins wrote: 
Does the -f option do anything? 
Do you have ip_conntrack modules loaded? 

Martin Maèok 
IT Security Consultant 

Yes, good point.  I haven't tried without it yet.

Explanatory note:  In order for ip_conntrack to work, packets must be 
defragmented so that all the necessary information is available e.g. 
destination port, which could not be obtained individual fragments except the 
first.

---------------------------------------------------------------------
For help using this (nmap-dev) mailing list, send a blank email to
nmap-dev-help () insecure org . List archive: http://seclists.org



Current thread: