- . , . , , " " . , , .
, .
, ( 1).
1.
, . , , , ( ) . , TCP/IP.
( ) . - .
- . , , , Telnet, "" 6 , (accounts) , (, SYSADM DBSNMP Oracle), .. .
(.3), .
. . , - .. . . , . . , , . . , . SATAN, Internet Scanner, Cisco Secure Scanner ..
|
|
, . , , , , , . . , , . , TCP/IP .. , , , . Internet Scanner ISS. . (, UNIX Windows). , - , ( UNIX), , . . System Scanner ISS.
. - , - , , , , . , - , - , , .
, (, Internet). . :
;
, - ;
, ;
|
|
- .
2. .
Internet Scanner | Internet Security Systems | , . . | |
System Scanner | Internet Security Systems | . | |
Database Scanner | Internet Security Systems | . | |
Cisco Secure Scanner | Cisco Systems | ||
CyberCop Scanner | Network Associates | ||
WebTrends Security Analyzer | WebTrends Corporation | ||
Enterprise | Security Manager | Symantec | |
SFProtect | Hewlett Packard | , , | |
Nessus | . |
, . "" . , .
, - (scan) (probe).
- , - . . ISS " " (inference). Cisco , , (banner), . , . .
- , , . , . , "", , . ISS "" (verification). Cisco , (" "), . , , , " " ("denial of service").
.
" " (banner check)
"" , . - Sendmail FTP-, . , , .
|
|
" " (active probing check)
"". " " (fingerprint) . , , . , , .
( Cisco - ) (). , . . , Cisco ISS.
, , " ".
" " (exploit check)
, "". . "exploit check" , ( ) . , , , .
, . : , " " , , .
. (, ), .. ( ) . , , .
, , . . , Internet Scanner "Denial of service" (" ").
:
- . . , .
- . . . , Internet Scanner : (High), (Medium) (Low).
- . () .
- .
- . , (, System Scanner). -. , System Scanner (fix script), . , , . , , .
, , :
|
|
( 1,2 4). . .
. "exploit check".
- .
- .
- . , . - , , , .. :
- , , .
- , , , , . FTP- Web-, patch' hotfix', .
- ( , , , , ..).
- ( , , ..).
- . : , . . . , , , . (trend analysis), . , , , . , , Internet Scanner Cisco Secure Scanner.
- .
, . , . , Windows : , , . - . , , . , . , , . , .
|
|
- , , - , . . , Internet Security Systems SAFEsuite, : Internet Scanner, System Scanner, Security Manager Database Scanner.
Cisco, . :
- - .. "" (nudge) . , .
- - .
" ". "" , , , , HEAD HTTP-.
, . , "" , . . , , , . . .
, . , , , . , .
. . .
, , , . , , , . :
- .
- , .
- .
, . , . , , .
TCP/IP