Validation of NMAP’s Network Behavior using Wireshark
| dc.contributor.advisor | Duffany, Jeffrey | |
| dc.contributor.author | Cruz Ramírez, Daniel | |
| dc.date.accessioned | 2020-09-16T14:38:49Z | |
| dc.date.available | 2020-09-16T14:38:49Z | |
| dc.date.issued | 2016 | |
| dc.description | Design Project Article for the Graduate Programs at Polytechnic University of Puerto Rico | en_US |
| dc.description.abstract | NMAP is used to actively scan networks using different ping techniques. There is not much information available on how NMAP works besides its website. Although the program states how it works, there is little validation of its functionality. Wireshark, a network protocol analyzer, was used to validate these features in a test system environment: ping scans, OS detection, including port scanning and version detection. Among NMAP’s weaknesses, we find it relies on an OS Database that should be updated regularly to be able to detect new operating systems and that its scans produce a large number of packets, which might cause detection of the scan in a properly protected network environment. NMAP’s OS Database can also be used to simulate operating systems for network scans, such as in a honeypot, using a program called honeyd. Any scan in a foreign network environment should be corroborated with other tools, passively if possible. Key Terms - NMAP, Ping Scan, Remote OS Detection, Wireshark. | en_US |
| dc.identifier.citation | Cruz Ramírez, D. (2016). Validation of NMAP’s network behavior using wireshark [Unpublished manuscript]. Graduate School, Polytechnic University of Puerto Rico. | en_US |
| dc.identifier.uri | http://hdl.handle.net/20.500.12475/587 | |
| dc.language.iso | en_US | en_US |
| dc.publisher | Polytechnic University of Puerto Rico | en_US |
| dc.relation.haspart | San Juan | en_US |
| dc.relation.ispartof | Computer Engineering; | |
| dc.relation.ispartofseries | Winter-2016; | |
| dc.rights.holder | Polytechnic University of Puerto Rico, Graduate School | en_US |
| dc.rights.license | All rights reserved | en_US |
| dc.subject.lcsh | Computer networks--Security measures--Computer programs | |
| dc.subject.lcsh | Computer networks--Monitoring--Computer programs | |
| dc.subject.lcsh | Computer network protocols | |
| dc.subject.lcsh | Polytechnic University of Puerto Rico--Graduate students--Research | |
| dc.title | Validation of NMAP’s Network Behavior using Wireshark | en_US |
| dc.type | Article | en_US |