Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 23 Jun 2004 16:05:10 +0200
From:      Remko Lodder <remko@elvandar.org>
To:        Jan Grant <Jan.Grant@bristol.ac.uk>
Cc:        Edd <list@arameus.net>
Subject:   Re: Utility to guess a remote hosts operating system?
Message-ID:  <40D98E16.8050303@elvandar.org>
In-Reply-To: <Pine.GSO.4.58.0406231456190.15108@mail.ilrt.bris.ac.uk>
References:  <200406231228.i5NCSpD01076@server1.web-mania.com> <Pine.GSO.4.58.0406231456190.15108@mail.ilrt.bris.ac.uk>

next in thread | previous in thread | raw e-mail | index | archive | help
Jan Grant wrote:

> On Wed, 23 Jun 2004, Edd wrote:
> 
> 
>>My question is:
>>
>>Does such a utility exist? I know nmap can guess os, but it takes a few
>>seconds and a port scan is needed first. Is there just a simply util
>>that can tell me without the port scan?
> 
> 
> How would that operate? Some kind of network fingerprinting is required.
> If you can narrow down the parameters of your question (eg: I have a
> network of windows machines and I'd like to figure out exact versions on
> each one) then you might have more luck.
> 
Hi Jan,Edd

Perhaps you mean something like:
p0f-2.0.3|/usr/ports/net-mgmt/p0f|/usr/local|Passive OS fingerprinting 
tool|/usr/ports/net-mgmt/p0f/pkg-descr|trevor@FreeBSD.org|net-mgmt|||http://www.stearns.org/p0f/

Which was written by William Stearns (if you read this bill, HI!), and 
now maintained by Michal Zalewski (lcamtuf).

Try it ;-)

-- 
Kind regards,

Remko Lodder                   |remko@elvandar.org
Reporter DSINet                |remko@dsinet.org
Projectleader Mostly-Harmless  |remko@mostly-harmless.nl



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?40D98E16.8050303>