ExamGecko
Question list
Search
Search

Related questions











Question 459 - 312-50v12 discussion

Report
Export

While performing an Nmap scan against a host, Paola determines the existence of a firewall. In an attempt to determine whether the firewall is stateful or stateless, which of the following options would be best to use?

A.
-sA
Answers
A.
-sA
B.
-sX
Answers
B.
-sX
C.
-sT
Answers
C.
-sT
D.
-sF
Answers
D.
-sF
Suggested answer: A

Explanation:

-sA (TCP ACK scan) This scan is different than the others discussed so far in that it never determines open (or even open|filtered) ports. It is used to map out firewall rulesets, determining whether they are stateful or not and which ports are filtered.The ACK scan probe packet has only the ACK flag set (unless you use --scanflags).

When scanning unfiltered systems, open and closed ports will both return a RST packet. Nmap then labels them as unfiltered, meaning that they are reachable by the ACK packet, but whether they are open or closed is undetermined. Ports that don't respond, or send certain ICMP error messages back (type 3, code 0, 1, 2, 3, 9, 10, or 13), are labeled filtered.https://nmap.org/book/man-port-scanning-techniques.html

asked 18/09/2024
Ezrah James panuelos
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first