On Tue 2005.09.20 at 16:36 -0600, Chris Kuethe wrote: > On 9/20/05, Okan Demirmen <[EMAIL PROTECTED]> wrote: > > yea, so turn off pf(4), or more specifically, state creation, especially > > when you are doing syn-scans (default when done as root). > > yes, pf was turned off on both the source and destination machine and > they were on the same dumb switch. Not that it should matter if Nmap > is forging frames on the wire with bpf...
uhm. have you tried comparing the --packet_trace flag with a tcpdump? if not, at least --debug to see where in the timeout counter starts to tick.