Nmap Development mailing list archives

Re: [NSE] [patch] Big changes to http-enum.nse


From: David Fifield <david () bamsoftware com>
Date: Tue, 19 Oct 2010 16:32:15 -0700

On Tue, Oct 19, 2010 at 03:15:16PM -0500, Ron wrote:
On Mon, 18 Oct 2010 14:50:26 -0500 Ron <ron () skullsecurity net> wrote:
Sure, that's a do-able change. I like the idea of expanding a
'probes' table like that, it means we can add extra stuff to probes
fairly easily, if it becomes necessary (maybe a HTTP header or
something). 

I also want to move 'severity' into the match table, so each match
can have a different severity rating. Right now, the severities are
ignored, and maybe we'll never use them, but it's there if we want
it. 

I'll work on this tonight and post an updated patch, if I finish it. 

Attaching current version of http-fingerprints.lua. The current revision in
my nmap-http branch reads this and makes the checks properly. 

I'll give it a try tonight but I suspect this will be ready to commit.

David Fifield
_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/


Current thread: