Nmap Development mailing list archives

Re: TCP / UDP trace route scanning options


From: Jacek Wielemborek <d33tah () gmail com>
Date: Sun, 11 Jan 2015 18:53:06 +0100

W dniu 11.01.2015 o 18:32, Sriram Rajan pisze:
Hi Dev, Can nap scan and determine the available ports to use in the
case of
TCP/UDP based trace route? This is required as the LAN drops the ICMP
Echo packets.
I hope to get better response via TCP syn/ack packets -PA Thanks, 
Sriram

Hello,

If your question is "can Nmap use TCP/UDP probes while performing a
traceroute", then an answer is yes. You can find a confirmation here:

http://nmap.org/book/nmap-phases.html

"Traceroute. Nmap contains an optimized traceroute implementation,
enabled by the --traceroute option. It can find the network routes to
many hosts in parallel, using the best available probe packets as
determined by Nmap's previous discovery phases. Traceroute usually
involves another round of reverse-DNS resolution for the intermediate
hosts. More information is found in the section called “Host Discovery”."

This means that if ICMP echo packets are dropped, Nmap will find another
probe based on previous discovery phases.

Cheers,
Jacek Wielemborek

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

Current thread: