Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 14 Dec 2001 15:38:44 +0200
From:      "endrju" <endrju@mail.lv>
To:        <freebsd-security@FreeBSD.ORG>
Subject:   Re: ipfw+syn
Message-ID:  <005d01c184a4$a6aeefb0$8241949f@TRDC>
References:  <005d01c183f8$2932aec0$8241949f@TRDC> <20011213130508.A20968@mail.slc.edu> <20011213131120.A21111@mail.slc.edu> <016001c18402$bd795110$8241949f@TRDC> <001601c18403$373ff030$5e3bad86@boredom>

next in thread | previous in thread | raw e-mail | index | archive | help
...# ipfw -a list
00100   0     0 allow ip from any to any frag
00200 419 44610 allow ip from any to any
65535 884 92423 deny ip from any to any

but anyway: 

su-2.04# nmap -sS -f aaa.bbb.ccc.ddd
Starting nmap V. 2.53 by fyodor@insecure.org (www.insecure.org/nmap/ )
sendto in send_syn_fragz: Permission denied


----- Original Message ----- 
From: "Jeff Jirsa" <jjirsa@hmc.edu>
To: <freebsd-security@FreeBSD.ORG>
Sent: Thursday, December 13, 2001 8:23 PM
Subject: Re: ipfw+syn


> 
> 
> > what's so silly there, erm....
> > but i ran nmap as root. i'm not fool.
> > look:
> > 
> > su-2.04# nmap -sS -f aaa.bbb.ccc.ddd
> > 
> > Starting nmap V. 2.53 by fyodor@insecure.org ( www.insecure.org/nmap/ )
> > sendto in send_syn_fragz: Permission denied
> > sendto in send_syn_fragz: Permission denied
> > sendto in send_syn_fragz: Permission denied
> > sendto in send_syn_fragz: Permission denied
> > ...and so on
> > 
> 
> Perhaps the problem is that the _fragments_ are denied by ipfw? 
> Can you successfully run nmap without the -f flag?
> 
> - Jeff
> 
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
> 


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?005d01c184a4$a6aeefb0$8241949f>