Penetration Testing mailing list archives

DENY x REJECT


From: "Rosenau" <rosenau () netsec com br>
Date: Wed, 3 Oct 2001 12:52:51 -0300

Hi

Does anybody know a port scanner that could distinguish a "deny" filtered
tcp port (firewall drops packets for the port) from a "reject" filtered tcp
port (firewall returns an ICMP - port unreachable)?.

Nmap seems to report boths cases simply as "filtered". Actually, both cases
are filtered, but when you receive a ICMP, you can be sure that the port is
really filtered. If you do not receive nothing, the port could be filtered,
or packets could have been lost...

Regards,
Rosenau.



----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/


Current thread: