[KLUG Members] OS Fingerprinting Tool

Peter Buxton members@kalamazoolinux.org
Mon, 5 Jan 2004 00:11:27 -0500


On Sun, Jan 04, 2004 at 08:39:46PM -0500, Adam Williams was only escaped
   alone to tell thee:

> nmap makes guesses like "Windows Millennium Edition (Me), Win 2000, or
> WinXP".  Oh, yea, thats helpful.  And it takes a very long time to do
> it.

Send more samples. That will take some time, too, but will eventually
save it... ;-) Seriously. I had an opportunity to fingerprint a bunch of
known boxes running a rather rare OS and various IP stacks, and I took
it and sent in the samples. What else is there to do? -- AFAIK, nmap is
the most complete OS fingerprinter.

-- 
Sometimes, the best medical care you can give someone in
the field is laying down a good line of suppressive fire.