Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 12

vlnoth.

L
v.Lushwur
Leurtment of Comuter Sclence & Lng.
Amrltu School of Lnglneerlng,
8ungulore.
PRLvLN1lCN Cl PCR1 SCANNlNC
NetAegis"
Leflnltlon:
"A technlque for dlscoverlng hosts weuknesses by
sendlng ort robes'
lts role ln hucklng: rerequlslte for hucklng, to leurn
ubout the vlctlm hostjnetwork
Port Scunnlng: vhut ls lt?
vertlcul scunnlng:
Attuckers scun some or ull orts on u slngle host
lntendlng to churucterlze the servlces runnlng on lt.
Eorlzontul scunnlng
Attuckers scun the orts on multlle lP uddresses ln
some runge of lnterest to flnd whlch host ls uctlve und
robe the toology of the turget network.
1yes of Port Scunnlng
1CP connect ort scun
1CP hulf oen scun
1CP lln scun
1CP ACl scun
1CP reverselndent scuns , etc..
Scunnlng Methodologles
Anomuly 8used detectlon
Letectlng zero duy uttuck
Slgnuture 8used detectlon
Letectlng bused on the revlous occurrence
Current trends
Eow lt ull sturted.
App||cat|on |ayer
1ransport |ayer
Network |ayer
Interface |ayer
Data||nk |ayer
hys|ca| |ayer
ln1L8nL1
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
sender
recelver
Sender's flrewall
8ecelver's flrewall
aegls
1ype 2
aegls
1ype 1
I address ort
No
I address
dest|nat|on
ort
No
1ype
of
serv|ce
19216821 4099 19216831 80 hLLp
I address
(dest|nat|on)
port |d serv|ce
19216831 80 hLLp
AcknowledgemenL
ACLAccess
conLrol llsL
App||cat|on |ayer
1ransport |ayer
Network |ayer
Interface |ayer
Data ||nk |ayer
hys|ca| |ayer
ln1L8nL1
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
Sender orlglnal
packeL
Sender orlglnal
packeL
ACLAccess
conLrol llsL
Sender's flrewall
8ecelver's flrewall
App||cat|on |ayer
1ransport |ayer
Network |ayer
Interface |ayer
Data ||nk |ayer
hys|ca| |ayer
ln1L8nL1
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
Aeg|s Server
Aeg|s C||ent
ACL
Serv|ce L|st
sender
recelver
Sender's flrewall 8ecelver's flrewall
aegls
1ype 2
aegls
1ype 1
I address
(destnat|on)
port |d
serv|ce
19216831 80 hLLp
neg ACk
ACLAccess
conLrol llsL
lnpuL module
neLwork layer
dest|nat|on ort
No
type of
serv|ce
mode
19216821 4099 19216831 8esolved
Cueue
1
Cueue
2
CuLpuL module
uaLa llnk layer
Aegls Lype 2
os ACk
user's packeL
l packeLs
Cache Lable
Cvervlew of the mechunlsm:
Ste : Cenerutlon of Aegls Pucket tye
Ste : Cenerutlon of Aegls Pucket tye
Ste : Recelver slde Authentlcutlon
Ste : on osltlve ACl, forwurd the ucket ln queue
on negutlve ACl ,dro the uckets.
Ste: Recelver slde ,check wlth Access Control Llst(ACL) und
then forwurd to destlnutlon
u threshold vulue ls set , whlch lndlcutes the number
of osslble ort robes ln the tlme construln.
Mlnlmlzlng the ort robes, mux robublllty of
mlsmutch
vulnerublllty of the Network to the uttuck decreuses
drustlcully.
the uttucks ure tlme construlned, the ort scunnlng
rocess ls deluyed.
concluslon

You might also like