1
0
mirror of https://github.com/nmap/nmap.git synced 2025-12-14 11:49:01 +00:00
Commit Graph

4399 Commits

Author SHA1 Message Date
david
709ac1131a o [Ncat] In listen mode, the --exec and --sh-exec options now accept a
single connection and then exit, just like in normal listen mode.
  Use the --keep-open option to get the old default inetd-like
  behavior. This was suggested by David Millis. [David]
2010-05-17 19:17:18 +00:00
luis
94d412c688 Removed a few things that either have been solved already or don't make sense anymore. Added a note about sharing UDP payload code between nping and nmap. 2010-05-17 17:59:15 +00:00
luis
ac860ca961 Corrected trivial typo 2010-05-17 17:56:29 +00:00
david
5c60064871 Fix some accidental duplicate template specifiers in
nmap-service-probes.
2010-05-17 16:21:56 +00:00
fyodor
f9613a11be Add an idea from Luis to the Nping TODO 2010-05-16 02:24:03 +00:00
ron
50b9af97b6 Added extra 'overrides' calls all over smb.lua. They're required for some modifications to smb-check-vulns.nse I'm planning. 2010-05-15 15:57:01 +00:00
fyodor
e75799b11e a couple new items for the todo list 2010-05-14 23:43:32 +00:00
fyodor
e2d9a5d7ad some changes from chat w/David 2010-05-14 23:03:55 +00:00
david
b0e4a020b5 Add to CHANGELOG:
o Nmap now works with "teamed" network interfaces on Windows. In order
  to distinguish the interfaces, their textual descriptions are now
  compared in addition to their MAC addresses. Without this, Nmap
  would send on the wrong interface and not receive any replies. A
  symptom of this problem was all scans failing except when
  --unprivileged was used. Norris Carden reported this bug. [David]
2010-05-14 16:56:50 +00:00
david
7b956b8099 Document r17542 in NMAP_MODIFICATIONS.
o Made eth_get_pcap_devname compare interface descriptions as well as
  MAC addresses when assigning interface names like eth0 on Windows.
  Only comparing MAC addresses failed in the case of "teamed"
  interfaces, when three interfaces (two physical, one virtual) could
  have the same hardware address.
2010-05-14 16:53:46 +00:00
tomsellers
66714334dc Including information in the nmap-service-probes file for
the Promise Array Manager matchline I just removed just in
case it is submitted again.
2010-05-14 01:18:15 +00:00
tomsellers
3d061b6ccf Removing a matchline for the Promise Array Management Software
that was triggering false matches against TLS protected services.

See http://seclists.org/nmap-dev/2010/q2/465
2010-05-13 23:34:01 +00:00
david
48c6e7b820 Move the body of eth_get_pcap_devname back into intf_get_pcap_devname, leaving
eth_get_pcap_devname as a wrapper.

In addition to the hardware address check, add a check of the textual interface
descriptions in order better to distinguish interfaces. It appears to me that
the pcap description (pdev->description) is the same as what is returned by a
call to PacketRequest with an OID of OID_GEN_FRIENDLY_NAME, so that's what I'm
comparing. That differs from OID_GEN_VENDOR_NAME, which is what you get in
ifrow.bDescr from GetIfTable.

We've found that simply comparing hardware addresses is not enough when using
Windows "teamed" (link-aggregated) interfaces. In a simple example, two NICs
are teamed together, leading to three interfaces visible to libdnet: the two
physical NICs and the virtual teamed interface. All three of these have the
same MAC address. What was happening was the eth0 interface was being assigned
to one of the physical NICs, packets were sent over it, but the replies were
not necessarily coming back to the same physical NIC.
2010-05-13 04:06:53 +00:00
fyodor
5de02049fc From changes from discussion w/David yesterday 2010-05-12 20:09:49 +00:00
david
5cf726d259 Fix up indentation in collect_dnet_interfaces. 2010-05-12 16:34:25 +00:00
fyodor
bd3eee9c17 Add a fingerprint -- scanme.nmap.org wasn't matching over PPoE DSL 2010-05-11 23:12:02 +00:00
fyodor
7246026a1f sorted 2010-05-11 22:03:53 +00:00
david
8d40939ac8 o [Ncat] Ncat in listen mode now prints the source port with the IP
address when verbosity is turned on. This patch is from rebellis.
2010-05-11 19:58:03 +00:00
drazen
f41a94622a --A small formating fix. 2010-05-11 18:31:47 +00:00
david
57238b7df5 Print the addresses that were resolved but not scanned in each scan
report. It looks like this.

$ ./nmap google.com -sn

Starting Nmap 5.30BETA1 ( http://nmap.org ) at 2010-05-10 23:57 MDT
Nmap scan report for google.com (66.102.7.99)
Host is up (0.073s latency).
Other addresses for google.com (not scanned): 66.102.7.104
rDNS record for 66.102.7.99: lax04s01-in-f99.1e100.net

This replaces the line

Hostname google.com resolves to 2 IPs. Only scanned 66.102.7.99
2010-05-11 05:59:09 +00:00
kris
0be83cf063 Move around a few gettimeofday() calls, including where port scan timing
comparisons would be affected by debugging level:

http://seclists.org/nmap-dev/2010/q2/373
2010-05-11 03:22:42 +00:00
patrik
3f7b440c49 Add match lines for
- Twisted web server (OS X 10.6.3 Server)
- Apple Filing Protocol (OS X 10.6.3 Server in VMware Fusion)
- Apple Mac OS X Password Server (OS X 10.6.3 Server)
- XAVi XG6546p Wireless Gateway
- Sun GlassFish Communications Server
- Comdasys, SIParator and Glassfish SIP services
2010-05-09 10:29:16 +00:00
fyodor
d069f0a4ab Fix a command name typo reported to me by John Schutz 2010-05-09 04:20:11 +00:00
fyodor
0b7b71cfc9 Add a discussion TASK for Ron's msrpc todo list 2010-05-09 00:30:40 +00:00
jah
3b15630d70 Wrap EPROTO case in an ifdef directive to avoid compiler errors when EPROTO is
not defined (such as on windows XP).
2010-05-08 23:35:41 +00:00
david
fea2ad0a33 o Moved the parse_long function from ncat to nbase for better reuse,
and used it to simplify netmask parsing code. This patch was
  contributed by William Pursell.
2010-05-08 21:08:55 +00:00
david
63c614e003 Make a few adjustments to service matches after reviewing them for
highlights.
2010-05-08 13:46:18 +00:00
david
5c1ec9a488 Don't build a shared libdnet library by default. We always link directly
against the static library.
2010-05-07 21:08:32 +00:00
kris
9277af5e57 update ip_is_reserved(): 31/8 and 176/8 allocated 2010-05-07 16:09:49 +00:00
kris
75a17210f7 remove unneeded OS_SCAN_DEFAULT #define (multi-gen support is long gone) 2010-05-06 23:00:09 +00:00
david
89b3eef5f6 Change the name of 50000/tcp to ibm-db2 (was iiimsf). This seems to be
more common. See http://seclists.org/nmap-dev/2010/q2/347.
2010-05-06 22:11:43 +00:00
david
6fa497f04e o Added EPROTO to the list of known error codes in service scan. Daniel
Miller reported that an EPROTO was causing Nmap to exit after sending
  the Sqlping probe during service scan. The error message was
  "Unexpected error in NSE_TYPE_READ callback. Error code: 71 (Protocol
  error)". We suspect this was caused by a forged ICMP packet sent by an
  active firewall.
2010-05-06 21:36:11 +00:00
david
e961d42ca4 Move the WIN32 definition of __func__ from nmap_winconfig.h to nbase_winconfig.h. 2010-05-06 14:15:27 +00:00
david
87c398970e All 7 service corrections. 2010-05-06 05:10:26 +00:00
david
16d51c1036 The last of the miscellaneous service submissions. 2010-05-06 04:59:13 +00:00
david
63e86580e5 Use $INSTDIR instead of a hardcoded $PROGRAMFILES/WinPcap or
$PROGRAMFILES64/WinPcap. Set $INSTDIR to $PROGRAMFILES/WinPcap or
$PROGRAMFILES64/WinPcap depending, but don't modify it if it already has a
value (from /D= on the command line). These changes make /D= work to install a
few files into an alternate directory.
2010-05-05 20:38:57 +00:00
jah
4e32ae3663 Add some info and formatting to committers.txt 2010-05-05 18:08:25 +00:00
david
07f3164937 Expand tabs and remove trailing whitespace in winpcap-nmap.nsi. 2010-05-05 17:43:20 +00:00
batrick
060d2b3c60 Small note about myself. 2010-05-05 14:02:29 +00:00
fyodor
a65dce1123 Better describe Ncrack, Nping, and NSE. Remove superfluous mentions of myself. 2010-05-05 07:02:20 +00:00
batrick
e1fafd654f Updated to current status. 2010-05-05 01:21:29 +00:00
batrick
c39066d3a2 Initial commit of my TODO file (from /status). 2010-05-05 01:19:36 +00:00
david
79b9985b79 Some miscellaneous service submissions. 2010-05-04 23:59:50 +00:00
fyodor
2a5f936a57 This nsock TODO hasn't been edited since 2006--we generally use the nmap.txt todo for nsock stuff. 2010-05-04 23:23:22 +00:00
fyodor
2343ac9d6a Move TODO files together into nmap/todo/ directory 2010-05-04 22:48:44 +00:00
fyodor
b64fc9eb37 new todo directory for storing the various nmap todo files 2010-05-04 22:43:33 +00:00
fyodor
b9a0bf14bc XML inconsistency is fixed 2010-05-04 22:40:31 +00:00
david
2e26cbf057 Here are all the http service submissions. 2010-05-04 16:45:15 +00:00
kris
0cf74cdfdd comment fix 2010-05-04 04:32:12 +00:00
fyodor
ec24af9020 Add the standard Nmap copyright header 2010-05-03 22:31:40 +00:00