Nmap??1720??????????
???????????? ???????[ 2015/2/25 15:22:28 ] ?????????????????? ??? Э??
?????????Nmap????????????????????????裩???????????1720???????telnet????????????????????????????δ??????????????????????????????£?
????H.323Э????????з??????????????????????????????????????????????????????????????????????????????????????????????NAT?豸/?????????????Щ??????????????б?????????????????????
??????????NAT??????????????IP????????ALG????????????Щ????????????????????ALG?????NAT???????·?????????????????Cisco??Checkpoint?????????NAT?豸/??????????H.323 ALG?????????
????Because H323 traffic is changed every time on the FW to accommodate NAT and payload changed (because this is a TCP connection) the FW has to serve as a proxy between both sides of the connection.
????Port scans and telnet do just that?? send SYN packets everywhere and wait for replay without sending any real data. When there is a rule match the 1720 port will answer the packet with a SYN-ACK but if the data is not legitimate the packet will be dropped along the way of the established connection.
?????????Checkpoint????????????????ALG???????????????H.323Э?????????1720???????H.323???????????telnet??????????????????????????????????????????????????????????????
??????

???·???
App??С????H5?????????????????Щ??
2024/9/11 15:34:34?????????????????????????
2024/9/10 11:13:49P-One ???????????????????????????????????????
2024/9/10 10:14:12???????????????????????????
2024/9/9 18:04:26??????????????????
2023/3/23 14:23:39???д?ò??????????
2023/3/22 16:17:39????????????????????Щ??
2022/6/14 16:14:27??????????????????????????
2021/10/18 15:37:44