1
0
mirror of https://github.com/nmap/nmap.git synced 2025-12-25 17:09:02 +00:00
Commit Graph

170 Commits

Author SHA1 Message Date
fyodor
77ef606d52 Update the refguide (man page) to note our new (soon-to-be) support for TCP simultaneous-open/split-handshake connections 2010-06-08 00:47:08 +00:00
fyodor
9df063b5ba References in refguide.xml to other chapters in the book need to be shielded with <notman>. For the man page itself we need to give URLs instead. 2010-05-28 07:14:12 +00:00
fyodor
54313a53af Change --webxml nmap.xsl stylesheet location from http://nmap.org/data/nmap.xsl to http://nmap.org/svn/docs/nmap.xsl. The former just redirected to the latter anyway. Maybe it would be better to just use http://nmap.org/nmap.xsl and make that a symlink to the appropriate place. Oh well, I think this is fine for now. 2010-05-27 02:28:40 +00:00
david
aae22b340e Update the description of UDP payloads to point to a new section on
nmap-payloads instead of referring to payload.cc.
2010-05-26 05:20:12 +00:00
david
0e7e3b90ca Make an unqualified number stand for seconds, not milliseconds, in
tval2msecs and tval2secs. This affects the following options:
  Nmap:
    --host-timeout
    --max-rtt-timeout --min-rtt-timeout --initial-rtt-timeout
    --scan-delay --max-scan-delay
    --stats-every
  Ncat:
    -d --delay
    -i --idle-timeout
    -w --wait
  Nping:
    --delay
    --host-timeout
    --icmp-orig-time --icmp-recv-time --icmp-trans-time
Some sanity checks have been added when it looks like someone is using
the old default of milliseconds. For example,

$ ./nmap --host-timeout 10000
The default unit for --host-timeout is seconds (since April 2010), so your time of "10000" is 2.8 hours. If this is what you want, use "10000s".
QUITTING!

$ ./nmap --scan-delay 1000
The default unit for --scan-delay is seconds (since April 2010), so your time of "1000" is 16.7 minutes. Use "1000ms" for 1000 milliseconds.
QUITTING!

Times with a unit are always taken at face value and will avoid the
error message.

See http://seclists.org/nmap-dev/2010/q2/159 for discussion.
2010-04-16 00:38:51 +00:00
david
6ba24a5a36 o Removed --interactive mode, a miniature shell whose primary purpose
was to hide command line arguments from the process list. It had
  been broken (would segfault during the second scan) since before May
  2009 until February 2010 and was rarely used. The fact that it was
  broken was reported by Juan Carlos Castro y Castro.

See http://seclists.org/nmap-dev/2009/q2/464 and
http://seclists.org/nmap-dev/2010/q1/688 for report and discussion.
2010-04-01 03:33:14 +00:00
david
8e0d0c2929 Mention that --open now omits entire host listings in refguide.xml. 2010-03-12 22:20:20 +00:00
david
53f64470e4 Add references and index entries for the old names of -sn and -Pn to
refguide.xml.
2010-03-11 01:43:06 +00:00
david
48654df805 Switch to -sn and -Pn as the new preferred synonyms for -sP and -P0.
This establishes a more regular syntax for some options that disable
phases of a scan:
	-n  no reverse DNS
	-Pn no host discovery
	-sn no port scan
Also, the -sP was possibly misleading because the 'P' suggests "ping
scan," when you can now do more than just pinging when you disable port
scanning. For example, -sC -sn and -sn -Pn --traceroute make sense.
2010-03-11 01:16:06 +00:00
david
9632670762 o The -v and -d options are now handled in the same way. The three
forms are equivalent:
    -v -v -v    -vvv    -v3
    -d -d -d    -ddd    -d3
  Formerly, the -ddd and -v3 forms didn't work. Mak Kolybabi submitted
  a patch.
2010-02-17 19:12:15 +00:00
david
a3a7d79b5f Update some SecLists URLs. 2010-02-11 17:43:02 +00:00
fyodor
41a73d779e Note that the -r option sorts the port in ascending fashion 2009-11-18 19:06:31 +00:00
david
ab8fcad92d Document the possibility of having comments in -iL and --excludefile in
refguide.xml.
2009-09-29 02:08:36 +00:00
david
fa6435d6ec Document that IP proto scan has special cases for SCTP and IGMP as well
as TCP, UDP, and ICMP.
2009-09-14 02:49:09 +00:00
fyodor
1681e7621b Add clear warnings about using --script=all. 2009-09-13 09:36:33 +00:00
ithilgore
89c46b7401 Fixed slight man page typo. 2009-07-31 22:08:36 +00:00
david
0746a7a28a Change -sP from "ping scan" to "don't port scan" in the documentation,
while still mentioning that "ping scan" is a common term. Mention the
use of -PN and -sP together to run NSE host scripts without ping and
port scanning.
2009-07-17 23:47:11 +00:00
david
5c33e639ae Using --scan-delay always implies a parallelism of 1. Change the fatal
error

You can't use --max-parallelism with --scan-delay.
QUITTING!

to a warning

Warning: --min-parallelism and --max-parallelism are ignored with --scan-delay.
2009-07-17 20:06:05 +00:00
david
3ce0321e1f Document UDP probe payloads in the Reference Guide. 2009-07-16 22:11:03 +00:00
josh
881fc1777f Changed the default port for UDP probing. Also changed the ICMP id in ICMP
pinging to be a nonzero number.
2009-06-05 03:29:10 +00:00
daniel
50830f7488 o Added initial SCTP port scanning support to Nmap. SCTP is
a layer 4 protocol used mostly for telephony related applications.
  This brings the following new features:
  o SCTP INIT chunk port scan (-sY): open ports return an INIT-ACK
    chunk, closed ones an ABORT chunk.  This is the SCTP equivalent
    of a TCP SYN stealth scan.
  o SCTP COOKIE-ECHO chunk port scan (-sZ): open ports are silent,
    closed ports return an ABORT chunk.
  o SCTP INIT chunk ping probes (-PY): host discovery using SCTP
    INIT chunk packets.
  o SCTP-specific IP protocol scan (-sO -p sctp).
  o SCTP-specific traceroute support (--traceroute).
  o The ability to use the deprecated Adler32 algorithm as specified
    in RFC 2960 instead of CRC32C from RFC 4960 (--adler32).
  o 42 well-known SCTP ports were added to the nmap-services file.
  Part of the work on SCTP support was kindly sponsored by
  Compass Security AG, Switzerland.  [Daniel Roethlisberger]
2009-06-03 23:15:45 +00:00
david
923f03707c Revise the new --script-args documentation, tweak formatting. 2009-05-29 16:25:03 +00:00
batrick
cfc16fb6de Updated refguide and scripting chapter of book to the new syntax of the
--script-args as well as a more full account of some details. The previous text
was very vague about some features, especially array values.
2009-05-29 07:14:48 +00:00
fyodor
d337e05f7f minor language tweak 2009-05-27 22:16:28 +00:00
david
fb7456950c Address mask ICMP messages are from RFC 950, not RFC 792. 2009-05-27 21:52:47 +00:00
david
0065d2cbb3 Update refguide.xml for new default ping. 2009-05-27 21:50:14 +00:00
ithilgore
36bbbf5b11 fixed typo at man page: defeat-rst-ratelimit 2009-05-26 08:48:13 +00:00
fyodor
e9225ce347 Linkify a title for the web version and regen man page. 2009-05-15 07:00:44 +00:00
fyodor
9d4771901f move legal-notices.xml and nmap-usage.xml to nmap docs directory since they are needed to build refguide (man page); add nmap-man-enclosures.xml which also eases building the refguide; add Nmap book details to refguide; rebuild man pages 2009-05-15 06:44:22 +00:00
david
1798450b93 Document Boolean operators for script selection in refguide.xml. (Mostly
copied from scripting.xml.)
2009-05-13 01:47:12 +00:00
david
486ff13e3a Add the --stats-every option. See http://seclists.org/nmap-dev/2009/q1/0404.html. 2009-02-24 00:23:54 +00:00
david
b819aa7f25 Document half-open and full-open IPv4 octet ranges. 2009-02-23 21:21:36 +00:00
david
4b27c53433 Update target specification section in refguide.xml with newest revisions. 2009-02-21 02:09:20 +00:00
fyodor
c0e819e86e rewording suggested by angico 2009-02-09 18:56:01 +00:00
david
5c946bb415 Canonicalize index terms: make "standard error/input/output" the main entries,
and "stderr/stdin/stdout" "see" entries.
2009-02-02 21:31:54 +00:00
david
19d919f15b Some proofreading in refguide.xml. Remove the parenthetical "(New format
nmap-services only.)" because the new format is the default.
2009-01-21 17:24:10 +00:00
david
9c661c3ef4 Capitalize a couple of uncapitalized sentences in the reference guide. 2009-01-21 17:19:19 +00:00
fyodor
516a8ddd0c proofreading from Raul Siles 2008-12-31 22:22:12 +00:00
david
5b6414c441 Remove a duplicate indexterm. 2008-11-11 05:26:47 +00:00
fyodor
9baccd2b04 remove a para which caused strange page rendering issues 2008-11-10 22:50:36 +00:00
fyodor
78aa276502 fix a link creation issue 2008-11-10 01:04:12 +00:00
fyodor
75e11edf2c note that --packet-trace enables --script-trace too 2008-11-07 08:59:41 +00:00
david
d082ff870f Adjust the --script-args example to use args from the whois script, not
anonFTP. Remove a mention of script ids.
2008-11-07 05:32:04 +00:00
david
824ee3c257 Small typo fixes from spell checking. 2008-11-07 01:03:00 +00:00
david
ea29e71ede Spell out a couple more numbers 0-9, some that had a left parenthesis before
them.
2008-11-04 23:37:35 +00:00
david
3b656d8245 Spell out some more numbers 0-9 I found, in constructions like "8-bit" and
"3-way handshake". I grepped for " [0-9]-" and "^[0-9]-".
2008-11-04 23:32:06 +00:00
david
30d86e3cb0 Add a missing space in refguide.xml. 2008-10-31 18:20:12 +00:00
david
471310ae3f Remove a blank section for --max-rate that was left when its contents were
merged with those of the --min-rate section.
2008-10-30 19:22:17 +00:00
fyodor
8734956cf3 Did an audit throughout the book and changed a bunch of numbers 0-9 to write out zero through nine. I guess this is more consistant, but I'm not sure it is any better. Shrug. 2008-10-29 08:31:55 +00:00
fyodor
f28c28af10 include extra info about fragmentation 2008-10-29 01:01:45 +00:00