nmap

基本

ping scan

$nmap -sP 192.168.0.0/24

OS fingerprint

$sudo nmap -O 192.168.0.1
Starting nmap 3.77 ( http://www.insecure.org/nmap/ ) at 2005-02-21 18:53 JST
Interesting ports on ***
(The 1659 ports scanned but not shown below are in state: closed)
PORT      STATE SERVICE
22/tcp    open  ssh
3689/tcp  open  rendezvous
6667/tcp  open  irc
22273/tcp open  wnn6
Device type: general purpose
Running: FreeBSD 4.X|5.X
OS details: FreeBSD 4.3 - 4.4PRERELEASE, FreeBSD 4.9 - 5.1
Uptime 20.697 days (since Tue Feb  1 02:10:03 2005)

Nmap run completed -- 1 IP address (1 host up) scanned in 17.956 seconds

ポート指定

$ nmap "-p -5,10,20-30,65000-" 192.168.0.1

openだけ取得

$ nmap -F  192.168.0.1