Nmap Development mailing list archives

Re: [NSE] Raw ethernet frame questions and NSE library questions


From: Fyodor <fyodor () insecure org>
Date: Mon, 8 Feb 2010 18:08:42 -0800

On Fri, Feb 05, 2010 at 04:32:33PM -0600, Kris Katterjohn wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 02/04/2010 04:09 PM, Fyodor wrote:
On Thu, Feb 04, 2010 at 10:58:03AM -0600, Kris Katterjohn wrote:

I've added support for this:

Nice!  It's worth noting for people who haven't been paying attention
that you're talking about your nmap-exp/kris/nse-rawip/ branch.

But this remains: if ethernet is requested, but Nmap fails to find an ethernet
route (but found a route nonetheless), should the raw socket be used instead?
Currently the raw socket is always opened and the eth stuff is used instead in
ip_send() because I'm not sure how this should work.  This fallback stuff
isn't implemented yet, however.

Ideally the ethernet-or-raw-socket decision should be made in exactly
the same way as the rest of Nmap's raw packet/frame sending
functionality.

Cheers,
-F

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/


Current thread: