Date: Fri, 14 Dec 2001 15:38:44 +0200 From: "endrju" <endrju@mail.lv> To: <freebsd-security@FreeBSD.ORG> Subject: Re: ipfw+syn Message-ID: <005d01c184a4$a6aeefb0$8241949f@TRDC> References: <005d01c183f8$2932aec0$8241949f@TRDC> <20011213130508.A20968@mail.slc.edu> <20011213131120.A21111@mail.slc.edu> <016001c18402$bd795110$8241949f@TRDC> <001601c18403$373ff030$5e3bad86@boredom>
next in thread | previous in thread | raw e-mail | index | archive | help
...# ipfw -a list 00100 0 0 allow ip from any to any frag 00200 419 44610 allow ip from any to any 65535 884 92423 deny ip from any to any but anyway: su-2.04# nmap -sS -f aaa.bbb.ccc.ddd Starting nmap V. 2.53 by fyodor@insecure.org (www.insecure.org/nmap/ ) sendto in send_syn_fragz: Permission denied ----- Original Message ----- From: "Jeff Jirsa" <jjirsa@hmc.edu> To: <freebsd-security@FreeBSD.ORG> Sent: Thursday, December 13, 2001 8:23 PM Subject: Re: ipfw+syn > > > > what's so silly there, erm.... > > but i ran nmap as root. i'm not fool. > > look: > > > > su-2.04# nmap -sS -f aaa.bbb.ccc.ddd > > > > Starting nmap V. 2.53 by fyodor@insecure.org ( www.insecure.org/nmap/ ) > > sendto in send_syn_fragz: Permission denied > > sendto in send_syn_fragz: Permission denied > > sendto in send_syn_fragz: Permission denied > > sendto in send_syn_fragz: Permission denied > > ...and so on > > > > Perhaps the problem is that the _fragments_ are denied by ipfw? > Can you successfully run nmap without the -f flag? > > - Jeff > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-security" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?005d01c184a4$a6aeefb0$8241949f>