Nmap Development mailing list archives

RE: Can i tell nmap what to log and what not?


From: "Pritchard, Adam (IDS EUC EMEA)" <adam_pritchard () ml com>
Date: Mon, 10 Jan 2005 10:00:10 -0000

Unless of course you are simply attempting to determine OS. I scan for a
specific set of ports that most types of host on our network will have
at least one of open. I can accurately determine most Unix machines,
Windows machines, Printers, Routers and Switches and some other obscure
devices by chance!

This is the set of ports I use:

21,22,23,79-80,135,139,514-515,1433-1434,8081,9100

Just to outline a portscan that's useful with a small port list.

Regards
Adam

-----Original Message-----
From: Ron [mailto:iago () valhallalegends com] 
Sent: 07 January 2005 14:00
To: Martin Contento
Cc: nmap-dev () insecure org
Subject: Re: Can i tell nmap what to log and what not?


If you know what ports are going to be open before hand, then you can 
use the -p option on nmap (nmap -p 1-80,135,137).  However, if you know 
which ports are going to be open, that rather defeats the purpose of a 
portscan. 

Martin Contento wrote:

Hi, i frequently use nmap to scan for certain open ports in my dorm.
It works very well, but parsing the logs is really slow because it's
full of "filtered" entries that don't interesnt me anyway.
Is there a way to tell nmap to "only log open ports"?
To avoid the obvious reply: i know man grep ;P

Thanks in advance

Martin

---------------------------------------------------------------------
For help using this (nmap-dev) mailing list, send a blank email to 
nmap-dev-help () insecure org . List archive: http://seclists.org




 


---------------------------------------------------------------------
For help using this (nmap-dev) mailing list, send a blank email to 
nmap-dev-help () insecure org . List archive: http://seclists.org 
--------------------------------------------------------
 
If you are not an intended recipient of this e-mail, please notify the sender, delete it and do not read, act upon, 
print, disclose, copy, retain or redistribute it. Click here for important additional terms relating to this e-mail.    
 http://www.ml.com/email_terms/ 
--------------------------------------------------------
 

---------------------------------------------------------------------
For help using this (nmap-dev) mailing list, send a blank email to
nmap-dev-help () insecure org . List archive: http://seclists.org



Current thread: