Nmap Development mailing list archives

Re: Bug(wish) with Ncat


From: דוד חי גוטויליג <gootvilig.davidhai () gmail com>
Date: Sun, 25 Jul 2010 08:03:04 +0300

2010/7/23 David Fifield <david () bamsoftware com>
Also in the release version (5.21), I have encountered a problem with the
socks4 proxy when Ncat is been used inside OpenSSH client's ProxyCommand,
for some reason Ncat will not pass the incoming stream back to the ssh
client. I couldn't figure way.

Here is a sample output:

OpenSSH_5.4p1, OpenSSL 1.0.0a-fips 1 Jun 2010
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: Applying options for *
debug2: ssh_connect: needpriv 0
debug1: Executing proxy command: exec ncat -v --proxy
127.0.0.1:4444--proxy-type socks4 SOMESERVER 22
.....
.....
Ncat: Version 5.21 ( http://nmap.org/ncat )
Ncat: Connected to proxy 127.0.0.1:4444
debug1: ssh_exchange_identification:

and here it's just hangs.

Does this happen with the latest version too? Please post the exact
commands your are using (you can use SOMESERVER in place of the server
name). This includes the ssh command and the command to start the proxy.

David Fifield
With version 5.21 it does happen. like this:
first create tunnel with OpenSSH like:
ssh -NvD 6060 user@SERVER
then use it like:
ssh -o ProxyCommand="ncat --proxy 127.0.0.1:6060 --proxy-type socks4
SERVER 22" user@SERVER

this just hangs. but if I use netcat it works, something like:
ssh -o ProxyCommand="nc -x 127.0.0.1:6060 -X 5 SERVER 22" user@SERVER

this happen also for version 5.35DC1
and also for latest revision (19221 as writing, version option prints 5.35DC18).

--dhg
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/


Current thread: