2020. 7. 6.

[network] scan 설치 및 sing 실습



nat 환경에서 실습한다.
설치 이후 sing 실습을 예정이다.

win7 - 192.168.11.147 / 00-0C-29-59-88-56
cent5 - 192.168.11.148 / 00:0C:29:2B:89:CB
cent6 - 192.168.11.149 / 00:0C:29:ED:11:69
cent7 - 192.168.11.150 / 00:0c:29:79:07:a6



*cent 7

rdate -s time.bora.net
yum repolist
yum install -y fping
yum install -y sing
yum install -y hping3
yum install -y nmap

*cent 6

rdate -s time.bora.net
yum repolist
yum install -y fping
yum install -y sing
root@localhost:- 
Installing for dependencies: 
-18. e16 
1.ø.2a 
lib netlø 
Transaction Surmary 
x86 64 
Install 
2 Package(s) 
Total download size: 81 k 
Installed size: 143 k 
Downloading Packages: 
(1/2): libnet1ø-1.ø.2a-18.e16.x86_64.rpm 
(2/2): sing-I. 1-2.e16.x86_64.rpm 
Tota I 
65 ka/s 
e pel 
37 ka 
43 ka 
81 ka 
37 k 
øø:øl 
. rpmts_HdrFromFdno: Header V3 RSA/SHA256 Signature, key ID ø6ß8b895: NOKEY 
Retrieving key from file: ///etc/pki/rpm-gpg/RPM-GPG-KEY-EPEL 
Importing GPG key ex217521F6: 
Llserid : Fedora EPEL 
Package: epeI-reIease-6-2. noarch (installed) 
: /etc/pki/rpm-gpg/Rpm-GPG-KEY-EPEL 
Public key for IibnetIø-I.ø.2a-18.e16.x86_64.rpm is not installed 
Croot@localhost
# 문제가 있다. 해결해야한다.

yum install -y hping3

root@localhost:- 
hping3 
x86 64 
Installing for dependencies: 
tcI 
x86 64 
e.ø.2øø511ø5-16.e16 
1:8.5.7-6.e16 
Transaction Surmary 
Install 
2 Package(s) 
Total download size: 2.ø M 
Installed size: 4.5 M 
Downloading Packages: 
(1/2): 
hping3-e.e.2øø511ø5-16.e16.x86 
(2/2): tc1-8.5.7-6.e16.x86 64 rpm 
Tota I 
warning: rpmts_HdrFromFdno: 
Header V3 
64. rpm 
e pel 
base 
89 ka 
1.9 ma 
2.ø ma 
2.ø ma's 
89 k 
1.9 m 
øe:el 
Retrieving key from file:///etc/pki/rpm-gpg/RPM-GPG-KEY-EPEL 
The GPG keys listed for the "Extra Packages for Enterprise Linux 6 - x86_64" 
ositoy are already installed but they are not correct for this package. 
Check that the correct key LIRLs are configured for this repositoy. 
Croot@localhost 
RSA/SHA256 signature, key ID ø6ß8b895. 
• NOK 
rep

# 역시 안된다.

yum install -y nmap

centos6 sing 오류
경고: rpmts_HdrFromFdno: Header V3 RSA/SHA256 Signature, key ID 0608b895: NOKEY

해당 오류일 경우:

yum install sing
yum install -y hping3

설치가 완료되었다.

*cent 5

rdate -s time.bora.net
yum repolist
yum install -y fping
yum install -y sing
yum install -y hping3
yum install -y nmap

6이랑은 다르게 잘된다.

*패킷 실습

window 10 wireshark vm8 on

alcome 
Capture 
Wiresha 
Enter a capture filter 
using this filter: 
VMware Network Adapter VMnet1 
VMware Network Adapter VMnet8 r•— 
Bluetooth 
Adapter for loopback traffic capture 
OIL-I 
All interfaces shown—

centos 6 sing

sysctl -w net.ipv4.icmp_echo_ignore_all=0
# icmp 무시하지 못하게 한다.

sing -c 5 192.168.11.150
sing 192.168.11.150 -c 5 -tstamp
sing 192.168.11.150 -c 5 -info
sing 192.168.11.150 -c 5 -mask

root@localhost:- 
-c 5 192.168.11.15ø 
SIUGing to 192.168.11.1% (192.168.11.15Ø): 
16 data bytes 
16 bytes from 192.168.11.1%: seq=ø ttI=64 
TOS=ø time=8.1ß5 
16 bytes from 192.168.11.1%: seq=l ttI=64 
TOS=e time-a. 243 
16 bytes from 192.168.11.1%: seq=2 ttI=64 
TOS=e time=e.4e3 
16 bytes from 192.168.11.1%: seq=3 ttI=64 
TOS=e time-a. 277 
16 bytes from 192.168.11.1%: seq=4 ttI=64 
TOS=ø time=ø.289 
192.168.11.1% sing statistics - 
5 packets transmitted, 5 packets received, 
packet loss 
round-trip min/avg/max = e. 243/1.863/8.1% 
ms 
192.168.11.1% -c 5 -tstamp 
SIUGing to 192.168.11.1% (192.168.11.1%): 
2ø data bytes 
2ø bytes from 192.168.11.1%: seq=ø ttI=64 
TOS=e diff=12 
2ø bytes from 192.168.11.1%: seq=l ttI=64 
TOS=e diff=13 
2ø bytes from 192.168.11.1%: seq=2 ttI=64 
TOS=e diff=12 
2ø bytes from 192.168.11.1%: seq=3 ttI=64 
TOS=e diff=13 
2ø bytes from 192.168.11.1%: seq=4 ttI=64 
TOS=ø diff=12 
192.168.11.1% sing statistics - 
5 packets transmitted, 5 packets received, 
packet loss 
192.168.11.1% -c 5 -info 
SINGing to 192.168.11.15Ø (192.168.11.15Ø). 
• 8 data bytes 
192.168.11.1% sing statistics - 
5 packets transmitted, packets received, 
packet loss 
192.168.11.1% -c 5 -mask 
SINGing to 192.168.11.15Ø (192.168.11.15Ø): 
12 data bytes 
192.168.11.1% sing statistics - 
5 packets transmitted, packets received, 
packet loss 
ms 
ms 
ms 
ms 
ms

win 10 wireshark icmp 필터링 캡처
icmp.type==8

icmp.type=8 
192.168.11.148 
192.168.11.15ø 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.15ø 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
192.168.11.148 
192.168.11.1% 
Source 
Destination 
7.5193613 
8.5213624 
1B 9.522141 
Protocol 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
lcmp 
Length 
98 
1138 
115 
74ø 
746 
751 
756 
761 
la. 5245132 
11.52588e 
136.558982 
137.565513 
138.5667413 
139.569148 
1413.5713767 
Info 
Echo 
Echo 
Echo 
Echo 
Echo 
Echo 
Echo 
Echo 
Echo 
Echo 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
(ping) 
request 
request 
request 
request 
request 
req u est 
request 
request 
request 
request 
id =øx9f 14 , 
id =øxgf 14 , 
id =øxgf 14 , 
id =øxgf 14 , 
id =øxgf 14 , 
id=øxa 514 , 
id —ex a 514 , 
id —ex a 514 , 
id —ex a 514 , 
id —ex a 514 , 
seq=ø/ø, ttI=255 (reply in 94) 
seq=256/I, ttI=255 (reply in 99) 
seq=512/2, ttI=255 (reply in Iß4) 
seq=768/3, ttI=255 (reply in leg) 
seq=Iß24/4, ttI=255 (reply in 116) 
seq=ø/ø, ttI=255 (reply in 742) 
seq=256/1, 
seq=512/2, 
seq=768/3, 
ttI=255 (reply in 747) 
ttI=255 (reply in 752) 
ttI=255 (reply in 757) 
ttI=255 (reply in 762)

선택저장은 export special packet 누르면 선택된 패킷이 저장된다.
선택은 ctrl+m

sysctl -w net.ipv4.icmp_echo_ignore_all=1



댓글 없음:

댓글 쓰기