Open/Listening Ports
From: gigawatt (gigawatt@cyberspace.org)Date: 06/27/02
- Next message: Phil Pucci: "Re: [Symantec NIS] They did it again: Support issues"
- Previous message: Bernd Eckenfels: "Re: How does anyone kepp files ecure on a windows server?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "gigawatt" <gigawatt@cyberspace.org> Date: Thu, 27 Jun 2002 09:58:57 -0400
Heres the dilema.
I have an in-house box that utilizes various software apps that are
not commercial. The apps run on ports that have not been assigned
and are therefore difficult to determine through the services file.
I have the ability sometimes to run LSOF and this does help, actually
it tells me the exact thing (daemon etc) running there. However, in the
event that I cannot run LSOF on the box, is there a way to determine what
is running there as well as the "structure" of the packets.
I am thnking that the best way is to sniff the ether traffic associated
with that port then deconstruct the actual information to determine
the structure. Is this the best way? Is there another way?
Additionally, I have in the past always used telnet to connect, but as
you are all aware it just hangs once the connection is made due to the
service probably not understanding what to send back or expect from
the remote connection. Any ideas on actual connection and manipulation
techniques.
Hope I didnt bore you too much.
TIA
Gig
- Next message: Phil Pucci: "Re: [Symantec NIS] They did it again: Support issues"
- Previous message: Bernd Eckenfels: "Re: How does anyone kepp files ecure on a windows server?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|