Re: nmap results filtered

This is a discussion on Re: nmap results filtered within the Linux Security forums, part of the System Security and Security Related category; Also, it doesn;t come back with filtered for all of the other ports that aren't allowed through ( I'...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 09-02-2003
news.so-net.com.hk
 
Posts: n/a
Default Re: nmap results filtered

Also, it doesn;t come back with filtered for all of the other ports that
aren't allowed through ( I'm scanning 65000 ports )

"news.so-net.com.hk" <xxx@xxx.com> wrote in message
news:3f4f5fb8@shknews01...
> Hi,
>
> I'm just wondering if anyone has come across this.
> I am using nmap to scan a number of hosts.
> The firewall is setup to drop all port access except 80 and 443.
> The results from the -sS and -sT scans are the same.
> Does anyone know why it is listing some of the ports as filtered even

though
> these as supposed to be dropped by the firewall.
>
> Port State Service
> 80/tcp open http
> 135/tcp filtered loc-srv
> 139/tcp filtered netbios-ssn
> 443/tcp open https
> 445/tcp filtered microsoft-ds
> 593/tcp filtered http-rpc-epmap
> 1720/tcp filtered H.323/Q.931
>
>



Reply With Quote
  #2 (permalink)  
Old 09-03-2003
Durk van Veen
 
Posts: n/a
Default Re: nmap results filtered

news.so-net.com.hk wrote:
> Also, it doesn;t come back with filtered for all of the other ports
> that aren't allowed through ( I'm scanning 65000 ports )


Filtered usually means stuff that is filtered by the Internet Service
Provider before it even gets to the machine that you're nmap-ing.


Reply With Quote
  #3 (permalink)  
Old 09-03-2003
Brastack
 
Posts: n/a
Default Re: nmap results filtered

if you use DROP and nmap see what host is up
it expect to recive ICMP:port unrechable
so mark it port as filtered

Durk van Veen wrote:
> news.so-net.com.hk wrote:
>
>>Also, it doesn;t come back with filtered for all of the other ports
>>that aren't allowed through ( I'm scanning 65000 ports )

>
>
> Filtered usually means stuff that is filtered by the Internet Service
> Provider before it even gets to the machine that you're nmap-ing.
>
>


Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 03:57 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0