Nmap Development mailing list archives

Re: SCTP scanme system at scanme.csnc.ch


From: Fyodor <fyodor () insecure org>
Date: Sat, 13 Jun 2009 13:46:45 -0700

On Fri, Jun 12, 2009 at 11:16:08PM +0000, Brandon Enright wrote:

My results are coming back filtered:

I get the same for SCTP (tried from my home DSL line and from a
colocated machine), though I can ICMP ping the host.  Here is what I get:

# nmap -sY -T4 --reason scanme.csnc.ch
Starting Nmap 4.85BETA10 ( http://nmap.org ) at 2009-06-13 13:40 PDT
All 42 scanned ports on fury.ustdmz.roe.ch (213.144.141.30) are filtered because of 42 no-responses
Nmap done: 1 IP address (1 host up) scanned in 10.54 seconds

I did a manual traceroute with nmap --ttl --packet-trace as Brandon
suggested, and my SCTP packets also make it all the way to
adsl-130-143.dsl.init7.net (213.144.130.143) before being apparently
dropped.  That (ttl 9) is last hop before I can reach them machine
with ping packets using ttl 10.

Both of my tests were using Linux.  The colocated machine doesn't have
NAT or anything else in the way.

Cheers,
-F

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: