Nmap Development mailing list archives

Re: [PATCH] zoneTrans.nse domain script argument


From: "Eddie Bell" <ejlbell () gmail com>
Date: Mon, 2 Jun 2008 11:16:01 +0100

Hi Kris

This seems like a good idea. I haven't got access to nmap
at the moment but I believe someone submitted a patch which
gave NSE scripts access to whatever hostname was specified by
the user on the command-line. Adding support for that would also
be useful.

- eddie

2008/6/2 Kris Katterjohn <katterjohn () gmail com>:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hey everyone,

I've attached a patch to allow for specifying the domain to try to transfer in
zoneTrans.nse.

The script now takes a "domain" argument.  It can currently be "scoped" using
the --script-args syntax "zoneTrans={domain=xxx}".

Fyodor gave me a host that allows zone transfers, but I'm getting "Not
Authoritative" for domains other than the server's root name (although it
seemed to work for him before).  I've scanned for other hosts that allow
transferring other domains, but I can't find any.

However, even though I can't get positive results from testing, everything
seems to work fine from what I've seen through Wireshark.

So, I need someone to verify the patch really works, and I'll need to see
about responses to [1] for the "scoping" syntax.  If IDs are still the way to
go, what should "zone-transfer" be changed to?  "zonetransfer"?  "zoneTrans"?

Thanks,
Kris Katterjohn

[1] http://seclists.org/nmap-dev/2008/q2/0564.html

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
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=ykKj
-----END PGP SIGNATURE-----


_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: