Pen testing a NetCache by NetApp
From: miguel.dilaj@pharma.novartis.comDate: 05/27/02
- Previous message: pete: "RE: International Penetration Testing Law (United Kingdom)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: pen-test@securityfocus.com From: miguel.dilaj@pharma.novartis.com Date: Mon, 27 May 2002 11:58:57 -0300
Hello people
Yesterday I was pen-testing a NetCache. It seems well configured, any ICMP,
UDP, and TCP traffic was just dropped, except TCP traffic when source port
is a privileged one (20 and 53 were successfully tested, so I managed to
port scan the appliance).
Port 80 was open (provided the source port is privileged), so I used NetCat
specifying the source port for banner grabbing and preliminar
recognaisance.
I suppose that using fragroute I can opperate with comfort on this port,
didn't have the time to test it, yet.
If anyone has any interesting info or references (other than BugTraq) on
pen-testing a NetCache, I'll be glad to hear of it.
Thank you in advance. Kind regards,
Miguel Dilaj
----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/
- Previous message: pete: "RE: International Penetration Testing Law (United Kingdom)"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]