Penetration Testing mailing list archives

Re: Nikto open ports


From: Alberto Corsín Lafuente <alberto () corsin org>
Date: Wed, 8 Nov 2006 00:54:14 +0100

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Maybe some kind of directive such as apache's MaxSpareServers, or whatever in the webserver config?

El 07/11/2006, a las 12:13, noa () imperva com escribió:

Hi,

I used nikto to test a specific open port on a server. I ran the exact same test mutliple consecutive times, starting the next test immediately after the current one ended. I saw that after a few tests, nikto replied that there was no HTTP port on that server... A closer look revealed that the previous nikto test left the ports open so I'm guessing that the server stops responding because of too many open ports. Has anyone encountered this behavior? Do you know whether nikto does not in fact properly close all connections?

Thank you,
Noa

---------------------------------------------------------------------- --
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php? camp=701600000008bOW ---------------------------------------------------------------------- --


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (Darwin)

iD8DBQFFURyq5nUr49b46noRAtsIAKCC/D8pzKl2WeVOEkpC5kbDw4lDAQCeNwuf
dDnw/1Sp9EgTpWQ3O+XztLA=
=o3aN
-----END PGP SIGNATURE-----

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: