The problem is the calculation of checksums on raw packets, affecting TCP, UDP and ICMP. SYN scan is the main use of raw packets, so if you use connect() scan everything will appear fine. But in fact various plugins will not be working, for example have you noticed that icmp_timestamp.nasl never appears any more?
As Renaud has said before, best option is to shout loudly as SuSE. They are ignoring this. A shame because in every other respect they're a good distro.
Best wishes,
Paul
Troels Larsen wrote:
Hello all,
Well, I'm running nmap connect().... the problem is with syn scans?
The output of the test script is:
09:15:38.100481 localhost.search-agent > localhost.http: S [bad tcp
cksum fe80!] 3868:3868(0) win 512 [tos 0x8] (ttl 255, id 47626, len 40, bad cksum
80f6!)
Hmmm bad checksum...
/Troels
-- Paul Johnston Internet Security Specialist Westpoint Limited Albion Wharf, 19 Albion Street, Manchester, M1 5LN England Tel: +44 (0)161 237 1028 Fax: +44 (0)161 237 1031 email: [EMAIL PROTECTED] web: www.westpoint.ltd.uk
_______________________________________________ Nessus mailing list [EMAIL PROTECTED] http://mail.nessus.org/mailman/listinfo/nessus
