[32962] in North American Network Operators' Group
Re: Port scanning legal
daemon@ATHENA.MIT.EDU (Stephen Sprunk)
Tue Dec 19 17:05:25 2000
Message-ID: <023201c06a07$42b7a1e0$35132ca1@glock>
From: "Stephen Sprunk" <ssprunk@cisco.com>
To: "Jeff Wheat" <jeff@cetlink.net>, <nanog@merit.edu>
Date: Tue, 19 Dec 2000 14:55:58 -0600
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Errors-To: owner-nanog-outgoing@merit.edu
Thus spake "Jeff Wheat" <jeff@cetlink.net>
> Isn't that just sweet... So in a nutshell it is *not* illegal
> for kiddies to port scan a network looking for vulnerabilities.
> It would seem to me that such scans would impair the integrity
> of ones networks, or am I just smoking crack?
If the scans don't disrupt system operation (they're usually designed
not to), how would it impair network integrity?
To use (yet another) bad analogy, does a burglar walking through a
parking lot checking for unlocked cars commit a crime?  It's only a
crime to steal/vandalize the cars.
> Jeff
> CETLink.Net
S
     |          |         Stephen Sprunk, K5SSS, CCIE #3723
    :|:        :|:        Network Design Consultant, GSOLE
   :|||:      :|||:       New office: RCDN2 in Richardson, TX
.:|||||||:..:|||||||:.    Email: ssprunk@cisco.com