An IPv6 port scan says that port 24554 is open. When I try Putty at the IPv6 adress, I see the initial response from hin binkp.
I have not seen this behaviour before. Anyone have any idea what causesthe
IPv6 connect to be refused and the IPv4 connect accepted?
How dit you do the scan?
# nmap -pbinkp -6 2a05:3580:de00:1687:21f:c6ff:fe1e:b46a
Starting Nmap 6.47 ( http://nmap.org ) at 2017-12-18 15:18 CET
Nmap scan report for SkyNet-Best-ISP-in-StPetersburg-Russia.sknt.ru (2a05:3580:de00:1687:21f:c6ff:fe1e:b46a)
Host is up (0.052s latency).
PORT STATE SERVICE
24554/tcp closed binkp
How dit you do the scan?
An IPv6 port scan says that port 24554 is open. When I try Putty
at the IPv6 adress, I see the initial response from hin binkp.
Oh? To me it is closed. "Connection refused".
I have not seen this behaviour before. Anyone have any idea what
causes the IPv6 connect to be refused and the IPv4 connect
accepted?
Firewall?
Perhaps his "VER binkd/1.1a-47/Linux binkp/1.1" is not compiled for
ipv6?
http://www.ipv6scanner.com/
has he limited the number of servers available?
http://www.ipv6scanner.com/
Are you sure "I am authorized to initiate this port scan." ? :)
Michiel van der Vlist wrote:
http://www.ipv6scanner.com/
Are you sure "I am authorized to initiate this port scan." ? :)
Hello Tommi! 18 Dec 17 17:11, you wrote to Michiel van der Vlist:
Michiel van der Vlist wrote:In Russia, ofcourse, the ports of my system are scanned all day from
http://www.ipv6scanner.com/Are you sure "I am authorized to initiate this port scan." ? :)
ip adresses assigned to Russia. Why shouldn't I be allowed to return
the courtesy.
Are you sure "I am authorized to initiate this port scan." ? :)
In Russia, ofcourse, the ports of my system are scanned all day from
ip adresses assigned to Russia. Why shouldn't I be allowed to return
the courtesy.
http://www.ipv6scanner.com/
Are you sure "I am authorized to initiate this port scan." ? :)In Russia, ofcourse, the ports of my system are scanned all day
from ip adresses assigned to Russia. Why shouldn't I be allowed
to return the courtesy.
http://www.ipv6scanner.com/
Are you sure "I am authorized to initiate this port scan." ? :)
In Russia, ofcourse, the ports of my system are scanned all day
from ip adresses assigned to Russia. Why shouldn't I be allowed
to return the courtesy.
People who perform the scanning never use their own IP addresses: whether I'd need to scan some host here in Russia, I'd use a zombie host from some other part of the world (most likely from the US: most people there have very low knowledge level in the information security, so there are lots of zombie hosts which are either cheap or easy to gain control over).
OK, so the scans I see coming from Russian IP adresses are actually scans performed from the USA. ;)
has he limited the number of servers available?
Not that I know of. I had no communication with him yet. But if he
has such a limitation, I do not see how that would explain the
observed behaviour.
has he limited the number of servers available?
Not that I know of. I had no communication with him yet. But if
he has such a limitation, I do not see how that would explain the
observed behaviour.
i forget what the remote sees when they connect to a limited server
will full ports...
If all servers were bysy, one would expect it to be busy on IPv4 as
well, at least occasionally.
If all servers were bysy, one would expect it to be busy on IPv4
as well, at least occasionally.
i was thinking of a situation where one would have two different
configs sharing the same in/out dirs but having other settings different... eg: bonding to an address, limiting servers, online at certain times only...
OK, so the scans I see coming from Russian IP adresses are actually
scans performed from the USA. ;)
Or China :) But I haven't seen any ssh dictionary attacks on IPv6 addresses so far.
If all servers were bysy, one would expect it to be busy on IPv4 as
well, at least occasionally.
i was thinking of a situation where one would have two different
configs sharing the same in/out dirs but having other settings
different... eg: bonding to an address, limiting servers, online at
certain times only...
Ah, one of your exotic scenarios... ;-)
Firewall is nr one on my list, IPv4 only binkd version second.
Beside, for binkd/1.1a-47/Linux binkp/1.1 all precompiled versions
for sensible OS's have IPv6 compiled in. If you do not want it you
have to take extra measures. Usually not the first choice.
i was thinking of a situation where one would have two different
configs sharing the same in/out dirs but having other settings
different... eg: bonding to an address, limiting servers, online
at certain times only...
Ah, one of your exotic scenarios... ;-)
maybe but not really... i've done it a few times here on my network to keep a system up while moving it to another system...
Firewall is nr one on my list, IPv4 only binkd version second.
i hadn't gotten there, yet... i was looking at the software
configuration :)
Beside, for binkd/1.1a-47/Linux binkp/1.1 all precompiled versions
for sensible OS's have IPv6 compiled in. If you do not want it you
have to take extra measures. Usually not the first choice.
Beside, for binkd/1.1a-47/Linux binkp/1.1 all precompiled versions
for sensible OS's have IPv6 compiled in. If you do not want it you
have to take extra measures. Usually not the first choice.
What measures? I used to think that I was a pretty good hacker but I could not find a way to compile a recent binkD without IPv6. There again, in Linux terms I'm still a "new hatchling".
Oh, a precise answer isn't required as I've given up on the notion and am happy to use older versions. ;)
As ipv6 support is listed in the facillities
, I was under the impression, that there would be a compiler option.
But why would you want to remove the ipv6 support on a linux system.
There are other ways to disable IPv6 in Linux alltogether.
| Sysop: | Winzlo |
|---|---|
| Location: | Minnesota, USA |
| Users: | 11 |
| Nodes: | 16 (0 / 16) |
| Uptime: | 495941:35:20 |
| Calls: | 82 |
| Files: | 1,070 |
| D/L today: |
27 files (11,920K bytes) |
| Messages: | 286,986 |