TCP/IP stack fingerprinting: Difference between revisions

Content deleted Content added
m improve sort order in Category:TCP/IP
Fingerprinting tools: "define" some terms that weren't used previously
Line 30:
* [[PRADS]] - Passive comprehensive TCP/IP stack fingerprinting and service detection
* [[Ettercap (computing)|Ettercap]] - passive TCP/IP stack fingerprinting.
* [[NetworkMiner]] - passive [[DHCP]] and TCP/IP stack fingerprinting (combines p0f, Ettercap and Satori databases)
* [[Nmap]] - comprehensive active stack fingerprinting.
* [[p0f]] - comprehensive passive TCP/IP stack fingerprinting.
* [[PacketFence]]<ref>[http://www.packetfence.org/ PacketFence]</ref> - open source [[Network Access Control|NAC]] with passive DHCP fingerprinting.
* Satori - passive [[Cisco Discovery Protocol|CDP]], DHCP, ICMP, [[HP Switch Protocol|HPSP]], [[HTTP]], TCP/IP and other stack fingerprinting.
* SinFP - single-port active/passive fingerprinting.
* XProbe2 - active TCP/IP stack fingerprinting.