Utility to guess a remote hosts operating system?

peter lageotakes plageotakes at yahoo.com
Wed Jun 23 09:35:43 PDT 2004


--- Jan Grant <Jan.Grant at bristol.ac.uk> wrote:
> On Wed, 23 Jun 2004, Edd wrote:
> 
> > My question is:
> >
> > Does such a utility exist? I know nmap can guess
> os, but it takes a few
> > seconds and a port scan is needed first. Is there
> just a simply util
> > that can tell me without the port scan?
> 
> How would that operate? Some kind of network
> fingerprinting is required.
> If you can narrow down the parameters of your
> question (eg: I have a
> network of windows machines and I'd like to figure
> out exact versions on
> each one) then you might have more luck.
> 
> -- 
> jan grant, ILRT, University of Bristol.
> http://www.ilrt.bris.ac.uk/
> Tel +44(0)117 9287088 Fax +44 (0)117 9287112
> http://ioctl.org/jan/
>
__/\____/\_____/\____/|_____________________________________
> flatline
> _______________________________________________
> freebsd-questions at freebsd.org mailing list
>
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questions-unsubscribe at freebsd.org"
> 

"Passive OS fingerprinting tool"
http://www.freebsd.org/cgi/ports.cgi?query=p0f&stype=all

Here is a snip from the ports description:
"Passive OS fingerprinting is based on information
coming from a remote host when it establishes a
connection to our system.  Captured packets contain
enough information to identify the operating system. 
In contrast to active scanners such as nmap and QueSO,
p0f does not send anything to the host being
identified."
Hope this helps


		
__________________________________
Do you Yahoo!?
Take Yahoo! Mail with you! Get it on your mobile phone.
http://mobile.yahoo.com/maildemo 


More information about the freebsd-questions mailing list