Penetration Testing mailing list archives
Re: Using ARP to map a network
From: sith () sithender com
Date: Tue, 4 Feb 2003 16:00:08 -0800
On Tue, Feb 04, 2003 at 06:36:59PM -0500, Jason Lewis wrote:
I have searched and can't seem to find any tools to help map a network based on ARP tables. It seems to me, I could take ARP tables from several machines and build a network map.
Yes, you could at least see what machines were up on the network. One thing I sometimes do is ping the broadcast address, and then save the arp table, but that is obviously not passive, hehe.
If machines were behind a router the ARP tables would show multiple IP's with the same MAC. With enough ARP tables, wouldn't I be able to build a map?
You won't have listings in your arp table beyond your subnet.
Is my theory flawed? My goal is to do passive network mapping based on any local information I can obtain from computers or network devices. Anyone have any ideas?
Unless you have static arp tables, you won't have things in your arp tables for usually more than a few minutes, so It's probably just as easy to get this information listening to network traffic, ie. logging the original arp replies. Hope this helps, sithEnder ---------------------------------------------------------------------------- This list is provided by the SecurityFocus Security Intelligence Alert (SIA) Service. For more information on SecurityFocus' SIA service which automatically alerts you to the latest security vulnerabilities please see: https://alerts.securityfocus.com/
Current thread:
- RE: Using ARP to map a network, (continued)
- RE: Using ARP to map a network Rob J Meijer (Feb 09)
- RE: Using ARP to map a network Dario Ciccarone (Feb 09)
- RE: Using ARP to map a network Rob Shein (Feb 06)
- Re: Using ARP to map a network planz (Feb 05)
- Re: Using ARP to map a network Rob J Meijer (Feb 09)
- Re: Using ARP to map a network planz (Feb 12)
- Re: Using ARP to map a network Rob J Meijer (Feb 09)
- Re: Using ARP to map a network Osvaldo J. Filho (Feb 05)
- Re: Using ARP to map a network Kevin Reynolds (Feb 05)
- Re: Using ARP to map a network Jason Lewis (Feb 05)
- Re: Using ARP to map a network Edwin van Andel (Feb 05)
- Re: Using ARP to map a network sith (Feb 05)
- RE: Using ARP to map a network Dario N. Ciccarone (Feb 05)
- RE: Using ARP to map a network Rajesh Kumar Dilli (Feb 05)
- Re: Using ARP to map a network Lambott (Feb 05)