Re: How can I erase my fingertips .

From: Alvaro Pereira (heberle@cianet.ind.br)
Date: 03/28/02


Date: Thu, 28 Mar 2002 17:25:47 -0300 (BRT)
From: Alvaro Pereira <heberle@cianet.ind.br>
To: Moti Levy <moti@flncs.com>

hi,

from /usr/src/sys/i386/conf/LINT

#
# TCP_DROP_SYNFIN adds support for ignoring TCP packets with SYN+FIN. This
# prevents nmap et al. from identifying the TCP/IP stack, but breaks support
# for RFC1644 extensions and is not recommended for web servers.
#
options TCP_DROP_SYNFIN #drop TCP packets with SYN+FIN

I hope it is what you need.

cya

Alvaro

On Thu, 28 Mar 2002, Moti Levy wrote:

> I want to stop nmap from detecting my os .
>
>
>
>
>
>
>
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
>

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



Relevant Pages

  • Re: hiding OS name
    ... > # prevents nmap et al. from identifying the TCP/IP stack, but breaks support ... > # for RFC1644 extensions and is not recommended for web servers. ... tools like nmap to detect the OS type and version. ...
    (FreeBSD-Security)
  • Re: hiding OS name
    ... > # prevents nmap et al. from identifying the TCP/IP stack, but breaks support ... > # for RFC1644 extensions and is not recommended for web servers. ... Only until someone enhances nmap to detect this signature and identify ... the host as running FreeBSD with the TCP_DROP_SYNFIN option enabled. ...
    (FreeBSD-Security)
  • Re: hiding OS name
    ... # TCP_DROP_SYNFIN adds support for ignoring TCP packets with SYN+FIN. ... # prevents nmap et al. from identifying the TCP/IP stack, ... > scanned by something like nmap using the OS detection, ... >> with "unsubscribe freebsd-security" in the body of the message ...
    (FreeBSD-Security)
  • [Full-Disclosure] Raw sockets elimination in Windows XP SP2
    ... crippling the TCP/IP stack instead of Fixing a flawed OS is not the ... According the Fyodor, author of Nmap, MS did not even implement it properly, ... companies are embracing P2P for their own internal networks, ...
    (Full-Disclosure)