Book Image

NMAP Essentials

By : David Shaw
Book Image

NMAP Essentials

By: David Shaw

Overview of this book

Table of Contents (17 chapters)
Nmap Essentials
Credits
About the Author
About the Reviewers
www.PacktPub.com
Preface
Index

Special TCP scans


We've already covered the two basic scan types that Nmap suggests—TCP connect scans (-sT) and the SYN stealth scan (-sS). These "full" and "half" connection scans will get you through almost any situation, and are absolutely the "go-to" scan types for almost every security professional, system administrator, network engineer, and hobbyist.

However, despite the flexibility that these types of scans can produce, there are occasional reasons to try different flags on packets. For these scans, we will introduce three new scan types: FIN, Xmas Tree, and Null scans.

The driving concept behind running these scans is that a closed port will attempt to reset the connection by issuing a RST (reset) packet, whereas an open port will just drop the connection entirely. This is useful because many Intrusion Detection Systems (IDS) are on the lookout for SYN scans—and the stealthy penetration tester never wants to get caught!

The first of these three new options, the FIN scan, starts by...