Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Pen-Test
[Top] [All Lists]

Re: Port Scanning.

Subject: Re: Port Scanning.
Date: Mon, 13 Dec 2004 20:37:57 +0000
Hi  Faisal,

Its always good practice to run scans from different locations on the Internet, using machines (that you LEGALLY have access to) that are not on the same subnet or ISP. Doing this will verify your results and show information about parts of your client's packet-filtering scheme that may be based on source address. If any of the machines you are using are connected to an ISP thats got egress filtering enabled, it will show up when you compare results. More reliable information about your client is obtained when your scanning machines are not NATed.

When it comes to tools, I always start with Nmap, but others can be useful, again to verify results and obtain more detailed information, like PoF. Specfic service scanners can be very informative, like IKEScan.

SOCKS5 supports UDP as well as TCP, so a limited scan can be made through trusted SOCKS servers.

Cheers


Faisal Khan wrote:



What's a good industry practise whilst doing port-scanning during a pen-test.

Do you rely on the results of a single vendor's software or do you use multiple softwares?

Also, with each OEM/vendor - do you scan once or twice?

I need to do a scan on a Class C Address if that matters in any way.

Faisal



Faisal Khan,  CEO
Net Access Communication
Systems (Private) Limited
________________________________

Network Security - Secure Web Hosting
Managed Internet Services - Secure Email
Dedicated Servers - Reseller Hosting

Visit www.netxs.com.pk for more information.




<Prev in Thread] Current Thread [Next in Thread>