Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Exploit World
Advertising
About/Contact
Credits
Sponsors:


Rational AppScan


Intro Reference Guide Book Install Guide
Download Changelog Zenmap GUI Docs
Bug Reports OS Detection Propaganda Related Projects
In the Movies In the News

Index

Symbols

--allports, Exclude Directive, Service and Version Detection
--append-output, Output
--badsum, Firewall/IDS Evasion and Spoofing
--data-length, Firewall/IDS Evasion and Spoofing
--datadir, Using Customized Data Files, Miscellaneous Options
--defeat-rst-ratelimit, Timing and Performance
--dns-servers, Host Discovery
--exclude, Target Specification
--excludefile, Target Specification
--fuzzy, Usage and Examples
--help, Miscellaneous Options
--host-timeout, Timing and Performance
--iflist, Output
--initial-rtt-timeout, Timing and Performance
--interactive, Miscellaneous Options
--ip-options, Firewall/IDS Evasion and Spoofing
--log-errors, Output
--max-hostgroup, Timing and Performance
--max-os-tries, OS Detection
--max-parallelism, Timing and Performance
--max-retries, Timing and Performance
--max-rtt-timeout, Timing and Performance
--max-scan-delay, Timing and Performance
--min-hostgroup, Timing and Performance
--min-parallelism, Timing and Performance
--min-rate, Timing and Performance
--min-rtt-timeout, Timing and Performance
--mtu, Firewall/IDS Evasion and Spoofing
--no_stylesheet, Output
--open, Output
--osscan-guess, Usage and Examples, OS Detection
--osscan-limit, OS Detection
--packet-trace, Enabling Packet Tracing, Output
--privileged, Miscellaneous Options
--randomize-hosts, Firewall/IDS Evasion and Spoofing
--reason, Host Discovery
--release-memory, Miscellaneous Options
--resume, Resuming Aborted Scans, Output
--scan-delay, Timing and Performance
--scanflags, Port Scanning Techniques
--script, Command-line Arguments, Nmap Scripting Engine (NSE)
--script-args, Command-line Arguments, Nmap Scripting Engine (NSE)
--script-trace, Command-line Arguments, Nmap Scripting Engine (NSE)
--script-updatedb, Command-line Arguments, Nmap Scripting Engine (NSE)
--send-eth, Miscellaneous Options
--send-ip, Miscellaneous Options
--servicedb, Miscellaneous Options
--source-port, Firewall/IDS Evasion and Spoofing
--spoof-mac, Firewall/IDS Evasion and Spoofing
--sR, Service and Version Detection
--stylesheet, Output
--system-dns, Host Discovery
--T, Timing and Performance
--traceroute, Host Discovery
--ttl, Firewall/IDS Evasion and Spoofing
--unprivileged, Miscellaneous Options
--version, Miscellaneous Options
--version-all, --version-all, Service and Version Detection
--version-intensity, --version-intensity, Service and Version Detection
--version-light, --version-light, Service and Version Detection
--version-trace, Technique Demonstrated, Service and Version Detection
--versiondb, Miscellaneous Options
--webxml, Output
-6, Miscellaneous Options
-A, Usage and Examples, Miscellaneous Options
-b, Port Scanning Techniques
-d, Enabling Debugging Output, Output
-D, Firewall/IDS Evasion and Spoofing
-e, Firewall/IDS Evasion and Spoofing
-F, Well Known Port List: nmap-services, Port Specification and Scan Order
-f, Firewall/IDS Evasion and Spoofing
-g, Firewall/IDS Evasion and Spoofing
-h, Miscellaneous Options
-iL, Target Specification
-iR, Target Specification
-n, Host Discovery
-O, OS Detection
-oA, Output
-oG, Grepable Output (-oG), Output
-oN, Normal Output (-oN), Output
-oS, $crIpT kIddI3 0uTPut (-oS), Output
-oX, XML Output (-oX), Output
-p, Port Specification and Scan Order
-PA, Host Discovery
-PE, Host Discovery
-PM, Host Discovery
-PN, Host Discovery
-PO, Host Discovery
-PP, Host Discovery
-PR, Host Discovery
-PS, Host Discovery
-PU, Host Discovery
-R, Host Discovery
-r, Port Specification and Scan Order
-S, Firewall/IDS Evasion and Spoofing
-sA, Port Scanning Techniques
-sC, Command-line Arguments, Nmap Scripting Engine (NSE)
-sF, Port Scanning Techniques
-sI, Port Scanning Techniques
-sL, Host Discovery
-sM, Port Scanning Techniques
-sN, Port Scanning Techniques
-sO, Port Scanning Techniques
-sP, Host Discovery
-sR, RPC Grinding
-sS, Port Scanning Techniques
-sT, Port Scanning Techniques
-sU, Port Scanning Techniques
-sV, Usage and Examples, Service and Version Detection
-sW, Port Scanning Techniques
-sX, Port Scanning Techniques
-v, Controlling Verbosity of Output, Output
-V, Miscellaneous Options

D

data files, Introduction
customizing, Using Customized Data Files
directory search order, Using Customized Data Files
database
storing scan results, Output to a Database
debugging
nmap.debugging, Information Passed to a Script
debugging output, Enabling Debugging Output
Document Type Definition, Purpose
dump, String Buffer Operations

L

legal issues, Legal Issues
license, Nmap Copyright and Licensing
OpenSSL exception, Nmap Copyright and Licensing
list scan, Avatar Online
example, Avatar Online
List scan, Host Discovery

N

ncar, Functional Programming Style List Operations
ncdr, Functional Programming Style List Operations
new, String Buffer Operations
new_dnet(), Raw packet network I/O
Nmap Scripting Engine, Introduction
nmap-mac-prefixes, MAC Address Vendor Prefixes: nmap-mac-prefixes
nmap-os-db, Nmap OS Detection DB: nmap-os-db
nmap-os-fingerprints, Old Nmap OS Detection DB: nmap-os-fingerprints
nmap-protocols, IP Protocol Number List: nmap-protocols
nmap-rpc, SunRPC Numbers: nmap-rpc
nmap-service-probes, Version Scanning DB: nmap-service-probes
comments, nmap-service-probes File Format
complete example, Putting it all together
Exclude directive, Technique Described, Exclude Directive
fallback directive, fallback Directive
file format, nmap-service-probes File Format
match directive, match Directive
Probe directive, Probe Directive
probename, Probe Directive
probestring, Probe Directive
rarity directive, rarity Directive
softmatch directive, softmatch Directive
sslports directive, ports and sslports Directives
totalwaitms, totalwaitms Directive
nmap-services, Introduction, Well Known Port List: nmap-services
nmap.clock_ms(), Various Utility Functions for Raw Packet Support
nmap.get_interface_link(interface_name), Various Utility Functions for Raw Packet Support
nmap.new_socket(), Connect-style network I/O
NMAPDIR environment variable, Using Customized Data Files
NmapFE, Command-line and Graphical Interfaces
NSE, Nmap Scripting Engine (NSE)
NULL probe, Technique Described
null scan, Port Scanning Techniques
numbytes, Buffered Network I/O Helper Functions

T

TCP flags
and OS detection, TCP flags (F)
TCP initial window size
and OS detection, TCP initial window size (W, W1–W6)
TCP options
and OS detection, Sequence generation (SEQ, OPS, WIN, and T1), TCP timestamp option algorithm (TS)
TCP RST data
and OS detection, TCP RST data checksum (RD)
TCP sequence prediction, Usage and Examples, TCP ISN greatest common denominator (GCD), TCP sequence number (S)
todword, IP Operations
Trace path to host, Host Discovery
TTL
and OS detection, IP initial time-to-live (T)

U

UDP
and OS detection, UDP (U1)
UDP ping, Host Discovery
UDP scan, Port Scanning Techniques
Umit Scan Results, Saving and loading scan results
uninstallation, Removing Nmap
uptime, Usage and Examples

V

verbosity, Controlling Verbosity of Output
nmap.verbosity, Information Passed to a Script
version scan, Service and Version Detection
additional service information, Usage and Examples, match Directive
cheats, Cheats and Fallbacks
creating custom probes, Submit New Probes
discovering OSs, match Directive
empty version column, Usage and Examples
examples, Usage and Examples
fallbacks, Technique Described, Cheats and Fallbacks
helper functions, match Directive
intensity level, Probe Selection and Rarity
performance, Technique Described, Probe Selection and Rarity
post-processors, Post-processors
probable ports, Technique Described
probe string, Technique Described
rarity, Probe Selection and Rarity
service fingerprint, Submit Service Fingerprints
SMB post-processor, Technique Described
soft match, Technique Described
softmatch directive, softmatch Directive
technique, Technique Described
virtual hosts, Cheats and Fallbacks

W

warranty (lack of), No Warranty
welcome banner, Technique Described
wildcard, Port Specification and Scan Order
Window scan, Port Scanning Techniques
windows
limitations, Windows

X

Xmas scan, Port Scanning Techniques
XML, XML Output (-oX)
Document Type Definition, Purpose
output example, XML Output (-oX)
outputting to a database, Output to a Database
parsing with Perl, Manipulating XML Output with Perl

Z

Zenmap, Introduction
command line options, Command line options
configuration file, Description of zenmap.conf
database, Saving and loading scan results, Per-user configuration files
disabling, Searching through results
profile editor, The profile editor
profiles, Profiles
creating, The profile editor
deleting, Editing a profile
editing, The profile editor
meta-information, Creating a new profile
scan tabs, Scan tabs
sorting by host, Sorting by host
sorting by service, Sorting by service
syntax highlighting
disabling, Scan results tabs
ZENMAP_DEVELOPMENT, Output redirection and debugging
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]