Interesting challenge

From: Sanjay K. Patel (sanjay.patel_at_rexwire.com)
Date: 01/30/04

  • Next message: Kenzo: "Re: Offline sam dump?"
    To: <pen-test@securityfocus.com>
    Date: Fri, 30 Jan 2004 11:42:49 -0500
    
    

    We are doing a pen test for a client and have run into a interesting
    situation. The client has a server running IIS and Exchange we can get to it
    through a browser but when we try to run Nessus or Eeye Retina against it,
    neither product can find the server. The client is not running any IDS
    system has a simple firewall. A port scan revels no open port though port 80
    is open since the server is serving pages.

    SKP

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: Kenzo: "Re: Offline sam dump?"

    Relevant Pages

    • Re: Unable to print to networked printer - get access denied messa
      ... Check the permissions on the server assuming the client has a true RPC ... How is the Standard TCP/IP port configured for the device? ...
      (microsoft.public.windowsxp.print_fax)
    • Re: interfaces lo:1 lo:2 lo:3? (for remote ssh tunnels)
      ... That's the problem tunneling (port forwarding) solves. ... >>can't get past the client firewall. ... > I don't understand why the server would be making the ... server initiates another connection to the client -- in this ...
      (Debian-User)
    • Re: Remote Connection Issue
      ... through port number 3389 and a workstation on the LAN through port number ... I understand that you want to allow a LAN client ... and you have configured server publishing rule ... > By default Terminal Server and Windows 2000 Terminal Services uses TCP ...
      (microsoft.public.windows.server.sbs)
    • Re: RealVNC
      ... Default listening port for RealVNC server that runs on the machine on which ... Then there is default Java listening port on port 5800 on the client machine ...
      (microsoft.public.windows.server.sbs)
    • Re: Redirecting data sent to a local printer to another host and port on the network
      ... All client workstations have access to the ... simply redirecting netcat traffic on port 9100 to port 515 on ... Only LPR clients talk to LPD print server daemons. ... >workstation at the branch site where the print job originated. ...
      (comp.unix.sco.misc)