LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-12-2008, 12:28 AM   #1
sanjee
Member
 
Registered: Jul 2008
Posts: 129

Rep: Reputation: 15
Arrow NMAP security


NMAP is a really good port scanner . But how to restrict this , regarding to port mapping through NMAP . Is there any port that should block for blocking NMAP.....or else.
 
Old 09-12-2008, 08:21 AM   #2
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,669

Rep: Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970
Quote:
Originally Posted by sanjee View Post
NMAP is a really good port scanner . But how to restrict this , regarding to port mapping through NMAP . Is there any port that should block for blocking NMAP.....or else.
Your question makes no sense. Please write clearly. What are you trying to do?
 
Old 09-12-2008, 08:34 AM   #3
sanjee
Member
 
Registered: Jul 2008
Posts: 129

Original Poster
Rep: Reputation: 15
I mean to say , how to block port scanning through NMAP or this type of tools.
Like -> nmap 192.XXX.XXX.XXX

Last edited by sanjee; 09-12-2008 at 08:38 AM.
 
Old 09-12-2008, 08:57 AM   #4
TB0ne
LQ Guru
 
Registered: Jul 2003
Location: Birmingham, Alabama
Distribution: SuSE, RedHat, Slack,CentOS
Posts: 26,669

Rep: Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970Reputation: 7970
Quote:
Originally Posted by sanjee View Post
I mean to say , how to block port scanning through NMAP or this type of tools.
Like -> nmap 192.XXX.XXX.XXX
Do you mean how do you prevent someone from port scanning your system? You don't say what version or distro of linux you have, so we can't give specifics. However, there are lots of how-tos on the internet (try Google), on how to secure a Linux system. All of it depends on your environment (you don't say anything about that, either), and how secure you want it to be.
 
Old 09-12-2008, 08:59 AM   #5
lipun4u
Member
 
Registered: Sep 2008
Location: Mumbai, india
Distribution: ubuntu and hp-unix
Posts: 118

Rep: Reputation: 15
use iptable to drop all the incoming packets (SYN, ACK, FIN, ICMP) from 192.10.10.10/8.
 
Old 09-12-2008, 09:13 AM   #6
sanjee
Member
 
Registered: Jul 2008
Posts: 129

Original Poster
Rep: Reputation: 15
I m using rhel 4/5 . Is it possible above mentioned (SYN, ACK, FIN, ICMP) will prevent port scanning . Or there are any other way to do this.

Last edited by sanjee; 09-12-2008 at 09:15 AM.
 
Old 09-12-2008, 09:24 AM   #7
lipun4u
Member
 
Registered: Sep 2008
Location: Mumbai, india
Distribution: ubuntu and hp-unix
Posts: 118

Rep: Reputation: 15
I think it will prevent. Because port scanning consists of sending IP packets to target and waiting for the reply from that target.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Learn how to use nmap, and nmap GUI, a great port scan tool LXer Syndicated Linux News 0 01-03-2008 09:10 AM
nmap security problem aq_mishu Linux - Security 6 09-01-2007 04:35 PM
LXer: Nmap: A valuable open source tool for network security LXer Syndicated Linux News 0 05-15-2006 08:54 AM
Newbie Security, Nmap and Hosts.Allow Tutilupo Linux - Security 1 01-16-2004 02:59 AM
nmap security sam00 Linux - Security 8 01-02-2004 08:32 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:28 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration