On Sun, 12 Dec 2004 15:26:52 +0800, Roger Filomeno <[EMAIL PROTECTED]> wrote: > nmap and hping can penetrate firewall. Used it on a telco grade > firewall to diagnose connectivity and it went straight through > perfectly. It can still find those ports.
That just means that the firewall wasn't actually configured to block those ports from your IP address. If the firewall has a rule to drop UDP packets (either all of them or just specific ports) from your address, I don't think you'll be able to get through. Also, nmap often reports filtered UDP ports as "open | filtered" because it can't really tell the difference. If there's no ICMP port unreachable reply, it's either because the firewall dropped your packet OR your packet got through. Nmap won't know any better, unless it did an actually service (-sV) scan. -bodgie -- Philippine Linux Users' Group (PLUG) Mailing List [EMAIL PROTECTED] (#PLUG @ irc.free.net.ph) Official Website: http://plug.linux.org.ph Searchable Archives: http://marc.free.net.ph . To leave, go to http://lists.q-linux.com/mailman/listinfo/plug . Are you a Linux newbie? To join the newbie list, go to http://lists.q-linux.com/mailman/listinfo/ph-linux-newbie
