Nmap Development mailing list archives

Re: SCTP scanme system at scanme.csnc.ch


From: David Fifield <david () bamsoftware com>
Date: Wed, 1 Jul 2009 10:36:39 -0600

On Fri, Jun 12, 2009 at 01:46:44PM -0600, David Fifield wrote:
On Fri, Jun 12, 2009 at 09:08:21PM +0200, Daniel Roethlisberger wrote:
I've deployed an SCTP `scanme' system at scanme.csnc.ch in order
to provide a test scan target for the SCTP port scanning
functionality.  It's a dedicated embedded FreeBSD system running
a few dummy SCTP services.  TCP and UDP are firewalled.

When testing SCTP port scans, please use ``scanme.csnc.ch'' as
target instead of real public SCTP services.

This is cool! Here's what I get:

# nmap -sY scanme.csnc.ch --reason
Starting Nmap 4.85BETA10 ( http://nmap.org ) at 2009-06-12 13:22 MDT
Interesting ports on fury.ustdmz.roe.ch (213.144.141.30):
Not shown: 40 closed ports
Reason: 40 aborts
PORT   STATE SERVICE REASON
7/sctp open  echo    init-ack
9/sctp open  discard init-ack

# nmap -sZ scanme.csnc.ch --reason
Starting Nmap 4.85BETA10 ( http://nmap.org ) at 2009-06-12 13:22 MDT
Interesting ports on fury.ustdmz.roe.ch (213.144.141.30):
Not shown: 40 closed ports
Reason: 40 aborts
PORT   STATE         SERVICE REASON
7/sctp open|filtered echo    no-response
9/sctp open|filtered discard no-response

I want to report that I bought a new ADSL modem device yesterday and I
still get results from the scanme host, even through NAT. The two
devices that have worked for me are

ActionTec M1000 running MontaVista Linux 2.4.17
Zoom X5 running some embedded OS

I'm surprised it worked with the Zoom, considering what a piece of junk
it has turned out to be.

David Fifield

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: