DENY x REJECT

From: Rosenau (rosenauat_private)
Date: Wed Oct 03 2001 - 08:52:51 PDT

  • Next message: Anderson, Mike: "RE: L0phtcrack Registry Change info"

    Hi
    
    Does anybody know a port scanner that could distinguish a "deny" filtered
    tcp port (firewall drops packets for the port) from a "reject" filtered tcp
    port (firewall returns an ICMP - port unreachable)?.
    
    Nmap seems to report boths cases simply as "filtered". Actually, both cases
    are filtered, but when you receive a ICMP, you can be sure that the port is
    really filtered. If you do not receive nothing, the port could be filtered,
    or packets could have been lost...
    
    Regards,
    Rosenau.
    
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
    Service. For more information on SecurityFocus' SIA service which
    automatically alerts you to the latest security vulnerabilities please see:
    https://alerts.securityfocus.com/
    



    This archive was generated by hypermail 2b30 : Thu Oct 04 2001 - 11:34:26 PDT