Penetration Testing mailing list archives

Re: [PEN-TEST] Undetectible NMAP scans


From: Jan Muenther <jan () RADIO HUNDERT6 DE>
Date: Fri, 25 Aug 2000 10:01:34 +0200

Hi,

scans is the best course of action. Scanlogd works great for me
(http://www.false.com/security/scanlogd/)
Its moved to http://www.openwall.com/scanlogd .

I _REALLY_ recommend snort. Get it from www.snort.org.
There are quite a few useful extensions available and you can get
fresh rulesets all the time so you don't have to bother keeping
up woth everything yourself ;o))

Run it with a stealth setup: External interface brought up with
no IP address assigned - only ssh on the internal net.
Practically invisible.
I think it performs best with a BSD-style OS (Free/Open).

Bye, Jan

--
Radio HUNDERT,6 Medien GmbH Berlin
- EDV -
j.muenther () radio hundert6 de


Current thread: