From owner-freebsd-questions@FreeBSD.ORG Wed Jun 29 22:45:54 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B566316A41C for ; Wed, 29 Jun 2005 22:45:54 +0000 (GMT) (envelope-from jhary@unsane.co.uk) Received: from unsane.co.uk (unsane.co.uk [62.140.220.90]) by mx1.FreeBSD.org (Postfix) with ESMTP id 95ED343D1F for ; Wed, 29 Jun 2005 22:45:51 +0000 (GMT) (envelope-from jhary@unsane.co.uk) Received: from unsane.co.uk (localhost [127.0.0.1]) by unsane.co.uk (8.13.3/8.13.3) with ESMTP id j5TMjJOC058645 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Wed, 29 Jun 2005 23:45:20 +0100 (BST) (envelope-from jhary@unsane.co.uk) Received: from localhost (jhary@localhost) by unsane.co.uk (8.13.3/8.13.3/Submit) with ESMTP id j5TMjG5v058642; Wed, 29 Jun 2005 23:45:17 +0100 (BST) (envelope-from jhary@unsane.co.uk) Date: Wed, 29 Jun 2005 23:45:15 +0100 (BST) From: Vince Hoffman To: Fabian Anklam In-Reply-To: <467b1e7a05062914585928de07@mail.gmail.com> Message-ID: <20050629232054.J8551@unsane.co.uk> References: <467b1e7a050629141856d72f91@mail.gmail.com> <6.1.0.6.2.20050629143657.083d5050@cobalt.antimatter.net> <467b1e7a05062914585928de07@mail.gmail.com> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: freebsd-questions@freebsd.org, Glenn Dawson Subject: Re: Looking for arp scanner X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 29 Jun 2005 22:45:54 -0000 On Wed, 29 Jun 2005, Fabian Anklam wrote: > On 6/29/05, Glenn Dawson wrote: >> At 02:18 PM 6/29/2005, Fabian Anklam wrote: >>> Hi there, >>> >>> I've browsing freshports.org for an arp scanner and found only >>> arpscan, which is marked broken and knowlan, which hasn't been updated >>> in years. What's the tool of choice to map out IP-Adresses on a subnet >>> when you know that quite a few hosts are firewalled from ping? >> >> Try nmap. It has a variety of different ways to "look" for systems on a >> given subnet. >> > Thanks. Tried nmap. As I said, some systems that i want to have in my > output are locally firewalled and I doubt the -sP switch catches > them. Port scans are out of the question. Thinking about it even if the host blocks ping then it will have to reply to an arp request. so make a short script to clear the arp cache ('arp -a -d' as root) then do your nmap -sP xxx.xxx.xxx.xxx/yyy and do an arp -a which will list all the arp entries in your arp cache (should be every host that responded to an arp request when you did the ping scan but maybe pipe it through grep to only get the arps for ips in that range) also arping may be of use. Vince > >> -Glenn >> >> >>> Thanks, Fabian >>> _______________________________________________ >>> freebsd-questions@freebsd.org mailing list >>> http://lists.freebsd.org/mailman/listinfo/freebsd-questions >>> To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" >> >> > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" >