Greetings!

On Tue, 5 Aug 2003 10:12:54 +0530 "Naveen Pareek"
<[EMAIL PROTECTED]> wrote:

> I want to scan my company's private network. This will be external
> scan. 

Why not from internal?


> There is one router with one public IP. Through that IP i want
> to scan private network of my company. Is it possible then how? If
> i'll put target as 192.168.0.0/24 then it will not scan because this
> IP is range is invalid. 

1.) Scanning past NAT-masquerading machines is difficult at least.
    Proof left as excercise to the student.  *SCNR*

2.) An internet border router/firewall is (read: should be) designed 
    to prevent access from external to internal machines.

3.) 192.168.* is not (read: should notbe) routed via internet 
    according to RfC1918

So I'd suggest to scan only the router from external plus and the LAN
(including router's internal interface) from internal.

Bye

Volker Tanger

-- 

ITK-Security
discon gmbh
DeTeWe AG & Co. KG

Fon +49 30 6104-3307
Fax +49 30 6104-3435
http://www.detewe.de/


     

Reply via email to