[c-nsp] Cisco ASA running 8.0(4) seems to listen on a ton of TCP ports

Jeff Kell jeff-kell at utc.edu
Tue Oct 13 15:44:06 EDT 2009


Kenny Long wrote:
> Has anyone else ran a port-scan against a Cisco ASA and gotten back a bunch
> of unexpected, listening ports?  This Nmap below shows that from port 1 to
> 80, 3,5,6,8,9,10 and others arent listening, but how come all of these are?

Is that on the management IP of the ASA?  Or an IP involved in NAT?

My first guess would be tcp intercept...

Jeff


More information about the cisco-nsp mailing list