TTL field???


 
Thread Tools Search this Thread
Top Forums UNIX for Advanced & Expert Users TTL field???
# 8  
Old 10-11-2001
This can be used to help defeat OS guessing in tools like queso and nmap. It's one of the easiest changes you can make to mess with the results. I recall that there were a few such hints/hacks in Hacking Linux Exposed...

The best part, however, is that the 2.4.* series kernels are able to obfuscate the OS completely. Any nmap scan will report that you are whoever you choose to be - for example, you can make yourself appear to the casual scanner to be a MacOS 7.1 machine, or a HP LaserJet Printer!

Check out the netfilter man pages, and this link:
http://sourceforge.net/projects/ippersonality/

Happy obfuscating!
# 9  
Old 10-11-2001
MySQL that was Superb

WoW!!! ,
that was a great idea.. I am wonderstuck at the idea of Solvman.. Great going man....
SmilieSmilie
# 10  
Old 10-11-2001
BTW: If anyone changes MAXTTL in linux ip.h and rebuilds the kernel, please post and let everyone know that, indeed, this is one possible solution for linux. Thanks!!

Or, if you find that it can be changed another way, please post.


Or. if you find a clever way to do it for any other system, please post.

Thanks again!!
# 11  
Old 10-11-2001
Lightbulb ..

U know, people, while reading all those replies, I came up with an idea. What if to create an application making TTL appear all the time randomly let's say in some range from 100 - 255. It would make lots of scanners confused. I wanna create a project on SourceForge. What do you think about the idea itself?

Later on
Smilie
# 12  
Old 10-12-2001
Check out this page:
http://project.honeynet.org/papers/finger/
Farther down, it'll tell you how to change the TTL for Solaris, Linux, and NT... An overall good read, as well.
Login or Register to Ask a Question

Previous Thread | Next Thread

9 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

awk to adjust coordinates in field based on sequential numbers in another field

I am trying to output a tab-delimited result that uses the data from a tab-delimited file to combine and subtract specific lines. If $4 matches in each line then the first matching sequential $6 value is added to $2, unless the value is 1, then the original $2 is used (like in the case of line... (3 Replies)
Discussion started by: cmccabe
3 Replies

2. Shell Programming and Scripting

Display combination of 4 field uniqe record and along with concatenate 5th and 6th field.

Table ACN|NAME|CITY|CTY|NO1|NO2 115|AKKK|ASH|IND|10|15 115|AKKK|ASH|IND|20|20 115|AKKK|ASH|IND|30|35 115|AKKK|ASH|IND|30|35 112|ABC|FL|USA|15|15 112|ABC|FL|USA|25|20 112|ABC|FL|USA|25|45 i have written shell script using cut command and awk programming getting error correct it and add... (5 Replies)
Discussion started by: udhal
5 Replies

3. Shell Programming and Scripting

Command/script to match a field and print the next field of each line in a file.

Hello, I have a text file in the below format: Source Destination State Lag Status CQA02W2K12pl:D:\CAQA ... (10 Replies)
Discussion started by: pocodot
10 Replies

4. Linux

How do I format a Date field of a .CSV file with multiple commas in a string field?

I have a .CSV file (file.csv) whose data are all enclosed in double quotes. Sample format of the file is as below: column1,column2,column3,column4,column5,column6, column7, Column8, Column9, Column10 "12","B000QRIGJ4","4432","string with quotes, and with a comma, and colon: in... (3 Replies)
Discussion started by: dhruuv369
3 Replies

5. Shell Programming and Scripting

AWK: Pattern match between 2 files, then compare a field in file1 as > or < field in file2

First, thanks for the help in previous posts... couldn't have gotten where I am now without it! So here is what I have, I use AWK to match $1 and $2 as 1 string in file1 to $1 and $2 as 1 string in file2. Now I'm wondering if I can extend this AWK command to incorporate the following: If $1... (4 Replies)
Discussion started by: right_coaster
4 Replies

6. Shell Programming and Scripting

awk, comma as field separator and text inside double quotes as a field.

Hi, all I need to get fields in a line that are separated by commas, some of the fields are enclosed with double quotes, and they are supposed to be treated as a single field even if there are commas inside the quotes. sample input: for this line, 5 fields are supposed to be extracted, they... (8 Replies)
Discussion started by: kevintse
8 Replies

7. Solaris

Set up TTL on process

Is there a way to setup the TTL (Time To Live) on a process. We have many ssh processes that seem to just stack up. These processes do not need a static connection all the time and it might cause problems on our servers. Does anybody know how to setup the TTL on a process? (10 Replies)
Discussion started by: jastanle84
10 Replies

8. Shell Programming and Scripting

Sort alpha on 1st field, numerical on 2nd field (sci notation)

I want to sort alphabetically on the first field and sort in descending numerical order on the 2nd field. With a normal "sort -r -n" it does this: abc ||| 5e-05 ||| bla abc ||| 3 ||| ble def ||| 1 ||| abc def ||| 0.2 ||| def As you can see it ignores the fact that 5e-05 is actually 0.00005... (1 Reply)
Discussion started by: FrancoisCN
1 Replies

9. IP Networking

TTL for IP addr from DNS through C code

Hi All, I know that getaddrinfo() return the multiple IP addresses (if present) for a hostname. But, I want to know how to get the TTL value for this list from DNS. I want to get this TTL value and cache this IP address list for that much time and then again go for DNS resolution if TTL expires. ... (2 Replies)
Discussion started by: softindia
2 Replies
Login or Register to Ask a Question