Penetration Testing mailing list archives

RE: Interesting challenge


From: "Sanjay K. Patel" <sanjay.patel () rexwire com>
Date: Fri, 30 Jan 2004 16:55:44 -0500

 almost everyone who replied pointed towards icmp. We have tried running the
test with icmp disabled. We still do not get a reply on those ports.

-SKP

-----Original Message-----
From: Clement Dupuis [mailto:cdupuis () cccure org] 
Sent: Friday, January 30, 2004 3:06 PM
To: 'Sanjay K. Patel'
Subject: RE: Interesting challenge

Have you carefully looked at some of the buried down setting under your
scanners.  It might simply be that it is expecting a reply from a ping
request before doing the scanning.  

Clement


-----Original Message-----
From: Sanjay K. Patel [mailto:sanjay.patel () rexwire com]
Sent: Friday, January 30, 2004 11:43 AM
To: pen-test () securityfocus com
Subject: Interesting challenge




We are doing a pen test for a client and have run into a interesting 
situation. The client has a server running IIS and Exchange we can
get to
it
through a browser but when we try to run Nessus or Eeye Retina
against
it,
neither product can find the server. The client is not running any
IDS
system has a simple firewall. A port scan revels no open port though
port
80
is open since the server is serving pages.


SKP




------------------------------------------------------------------------
-
--

------------------------------------------------------------------------
-
---


---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: