dc.rights.license | All rights reserved | en_US |
dc.contributor.advisor | Duffany, Jeffrey | |
dc.contributor.author | Cruz Ramírez, Daniel | |
dc.date.accessioned | 2020-09-16T14:38:49Z | |
dc.date.available | 2020-09-16T14:38:49Z | |
dc.date.issued | 2016 | |
dc.identifier.citation | Cruz Ramírez, D. (2016). Validation of NMAP’s network behavior using wireshark [Unpublished manuscript]. Graduate School, Polytechnic University of Puerto Rico. | en_US |
dc.identifier.uri | http://hdl.handle.net/20.500.12475/587 | |
dc.description | Design Project Article for the Graduate Programs at Polytechnic University of Puerto Rico | en_US |
dc.description.abstract | NMAP is used to actively scan
networks using different ping techniques. There is
not much information available on how NMAP
works besides its website. Although the program
states how it works, there is little validation of its
functionality. Wireshark, a network protocol
analyzer, was used to validate these features in a
test system environment: ping scans, OS detection,
including port scanning and version detection.
Among NMAP’s weaknesses, we find it relies on an
OS Database that should be updated regularly to be
able to detect new operating systems and that its
scans produce a large number of packets, which
might cause detection of the scan in a properly
protected network environment. NMAP’s OS
Database can also be used to simulate operating
systems for network scans, such as in a honeypot,
using a program called honeyd. Any scan in a
foreign network environment should be
corroborated with other tools, passively if possible.
Key Terms - NMAP, Ping Scan, Remote OS
Detection, Wireshark. | en_US |
dc.language.iso | en_US | en_US |
dc.publisher | Polytechnic University of Puerto Rico | en_US |
dc.relation.ispartof | Computer Engineering; | |
dc.relation.ispartofseries | Winter-2016; | |
dc.relation.haspart | San Juan | en_US |
dc.subject.lcsh | Computer networks--Security measures--Computer programs | |
dc.subject.lcsh | Computer networks--Monitoring--Computer programs | |
dc.subject.lcsh | Computer network protocols | |
dc.subject.lcsh | Polytechnic University of Puerto Rico--Graduate students--Research | |
dc.title | Validation of NMAP’s Network Behavior using Wireshark | en_US |
dc.type | Article | en_US |
dc.rights.holder | Polytechnic University of Puerto Rico, Graduate School | en_US |