148 lines
7.2 KiB
Plaintext
148 lines
7.2 KiB
Plaintext
# Nmap 7.99 scan initiated Tue Apr 14 03:25:55 2026 as: /usr/lib/nmap/nmap -vv --reason -Pn -T4 -sV -p 443 "--script=banner,(http* or ssl*) and not (brute or broadcast or dos or external or http-slowloris* or fuzzer)" -oN /root/results/edge.lan.ddnsgeek.com/scans/tcp443/tcp_443_https_nmap.txt -oX /root/results/edge.lan.ddnsgeek.com/scans/tcp443/xml/tcp_443_https_nmap.xml edge.lan.ddnsgeek.com
|
|
Nmap scan report for edge.lan.ddnsgeek.com (167.179.167.166)
|
|
Host is up, received user-set (0.014s latency).
|
|
rDNS record for 167.179.167.166: 167-179-167-166.a7b3a7.bne.nbn.aussiebb.net
|
|
Scanned at 2026-04-14 03:26:06 UTC for 303s
|
|
|
|
PORT STATE SERVICE REASON VERSION
|
|
443/tcp open ssl/http syn-ack ttl 55 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)
|
|
|_http-feed: Couldn't find any feeds.
|
|
|_http-chrono: Request times for /; avg: 643.62ms; min: 493.39ms; max: 859.71ms
|
|
|_http-dombased-xss: Couldn't find any DOM based XSS.
|
|
| http-vhosts:
|
|
| 127 names had status 404
|
|
|_auth.lan.ddnsgeek.com : 200
|
|
| http-security-headers:
|
|
| Strict_Transport_Security:
|
|
| HSTS not configured in HTTPS Server
|
|
| X_Content_Type_Options:
|
|
| Header: X-Content-Type-Options: nosniff
|
|
|_ Description: Will prevent the browser from MIME-sniffing a response away from the declared content-type.
|
|
|_http-date: Tue, 14 Apr 2026 03:26:55 GMT; -3s from local time.
|
|
|_http-litespeed-sourcecode-download: Request with null byte did not work. This web server might not be vulnerable
|
|
|_http-referer-checker: Couldn't find any cross-domain scripts.
|
|
|_http-title: Site doesn't have a title (text/plain; charset=utf-8).
|
|
| ssl-enum-ciphers:
|
|
| TLSv1.2:
|
|
| ciphers:
|
|
| TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (secp256r1) - A
|
|
| TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (secp256r1) - A
|
|
| TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (secp256r1) - A
|
|
| TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (secp256r1) - A
|
|
| TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 (secp256r1) - A
|
|
| compressors:
|
|
| NULL
|
|
| cipher preference: client
|
|
| warnings:
|
|
| Key exchange (secp256r1) of lower strength than certificate key
|
|
| TLSv1.3:
|
|
| ciphers:
|
|
| TLS_AKE_WITH_AES_128_GCM_SHA256 (X25519MLKEM768) - A
|
|
| TLS_AKE_WITH_AES_256_GCM_SHA384 (X25519MLKEM768) - A
|
|
| TLS_AKE_WITH_CHACHA20_POLY1305_SHA256 (X25519MLKEM768) - A
|
|
| cipher preference: server
|
|
|_ least strength: A
|
|
| http-headers:
|
|
| Content-Type: text/plain; charset=utf-8
|
|
| X-Content-Type-Options: nosniff
|
|
| Date: Tue, 14 Apr 2026 03:27:03 GMT
|
|
| Content-Length: 19
|
|
| Connection: close
|
|
|
|
|
|_ (Request type: GET)
|
|
|_http-wordpress-users: [Error] Wordpress installation was not found. We couldn't find wp-login.php
|
|
|_http-fetch: Please enter the complete path of the directory to save data in.
|
|
| http-sitemap-generator:
|
|
| Directory structure:
|
|
| Longest directory structure:
|
|
| Depth: 0
|
|
| Dir: /
|
|
| Total files found (by extension):
|
|
|_
|
|
|_http-stored-xss: Couldn't find any stored XSS vulnerabilities.
|
|
|_http-malware-host: Host appears to be clean
|
|
|_ssl-date: TLS randomness does not represent time
|
|
| ssl-cert: Subject: commonName=edge.lan.ddnsgeek.com
|
|
| Subject Alternative Name: DNS:edge.lan.ddnsgeek.com
|
|
| Issuer: commonName=R12/organizationName=Let's Encrypt/countryName=US
|
|
| Public Key type: rsa
|
|
| Public Key bits: 4096
|
|
| Signature Algorithm: sha256WithRSAEncryption
|
|
| Not valid before: 2026-04-10T22:57:08
|
|
| Not valid after: 2026-07-09T22:57:07
|
|
| MD5: 2275 6a09 ffa7 0fa3 e9b4 d4d9 935b cc9c
|
|
| SHA-1: 4254 b60e d6a3 e1d5 c688 5790 9077 4d48 6771 324a
|
|
| SHA-256: ba13 37c3 b1ba da02 7a62 6127 b74b 5a55 a998 f162 5321 6d67 437b 83e4 75c9 9523
|
|
| -----BEGIN CERTIFICATE-----
|
|
| MIIGAjCCBOqgAwIBAgISBmcFwVupv+qAOWoPyvIdTxKjMA0GCSqGSIb3DQEBCwUA
|
|
| MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD
|
|
| EwNSMTIwHhcNMjYwNDEwMjI1NzA4WhcNMjYwNzA5MjI1NzA3WjAgMR4wHAYDVQQD
|
|
| ExVlZGdlLmxhbi5kZG5zZ2Vlay5jb20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAw
|
|
| ggIKAoICAQDRQvC2uBTIFyI5PZHhprgwvMKWUGI5lVb+Nyq/nIqj9cQj/48J29f/
|
|
| 0jzgOR0qeQ/OzCl4zzLNe+7oPHvy4toCgEzS5kcYK5wkzga+f9r4fCtmtnNIxARj
|
|
| FV++mv1otbeIN5H/niosyNInQIt+xdDs4oGnd/rZQQfpHDkT0Womnei/oxyOc7wg
|
|
| OLo4rZWqAsbbP6g0M2AN/mVbzFWHEaaxg41RWtbLO4NTYl34YE3H+zEZpXrwdtIr
|
|
| F5iaUpARsLX/5xbEVcMT2/h0mSS7CNrJIzaVZZ8PZkx+fzc2wC74wqYgEMK9hKuw
|
|
| 1DnP33tY3y+fLG8DsUl4skPvF3JNigrGDJk77mdBIuV+K88KFFQ7FqeSm6g5tetH
|
|
| 7VPjYUFWy6roJB5G0++33CRmnBPXEFTfXcGcTDS/ojYIUJ7ZNw+SqIjYnMTeoSlc
|
|
| Vo1x/iLH+V/khueBk7nFkYHfJ7kScPHgkrWl9UO0UpY1M+Hvn7FCWwvOvGFGmSpS
|
|
| NGUAwD+r0L/vPcJsGPF/xKGD8w+r5Zvg7mbIuF39MfJFUTC1o9BEfePyc4WKKxh1
|
|
| sg/G3Xc+JH1VQbMGqb43UpStrPTU4zBg5V5fBDOJveqaAuLFQDnsg6AemXkTkRw1
|
|
| pagjc/C5VriYwgqN72eswMCS9vGePF1RVMwtN+sTiJ/f2N/7vVTqXQIDAQABo4IC
|
|
| ITCCAh0wDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMAwGA1Ud
|
|
| EwEB/wQCMAAwHQYDVR0OBBYEFMBxI/NZ4kZKERfmpeuZq6sPq61UMB8GA1UdIwQY
|
|
| MBaAFAC1KfItjm8x6JtMrXg++tzpDNHSMDMGCCsGAQUFBwEBBCcwJTAjBggrBgEF
|
|
| BQcwAoYXaHR0cDovL3IxMi5pLmxlbmNyLm9yZy8wIAYDVR0RBBkwF4IVZWRnZS5s
|
|
| YW4uZGRuc2dlZWsuY29tMBMGA1UdIAQMMAowCAYGZ4EMAQIBMC4GA1UdHwQnMCUw
|
|
| I6AhoB+GHWh0dHA6Ly9yMTIuYy5sZW5jci5vcmcvMzYuY3JsMIIBCgYKKwYBBAHW
|
|
| eQIEAgSB+wSB+AD2AH0ARq+GPTs+5Z+ld96oJF02sNntIqIj9GF3QSKUUu6VUF8A
|
|
| AAGdedKZ2gAIAAAFAAOKNT0EAwBGMEQCIGPcg6NezMgaHv40uiaU8+IcHgymgBV1
|
|
| e+5DPwpFYnRZAiA72f4Wj3x7nNnpw/E8F3dysgKaUMmT32F/JBEcwd0YeQB1ANgJ
|
|
| VTuUT3r/yBYZb5RPhauw+Pxeh1UmDxXRLnK7RUsUAAABnXnSmegAAAQDAEYwRAIg
|
|
| TBAY/jc9Uqm3KA5aTgoMQPl4bn5PkJs96v1bbiu0dsYCIGHcFdJe5b99a0Jam3oT
|
|
| pQRtgVeMWr+fWWh6ZkFche2gMA0GCSqGSIb3DQEBCwUAA4IBAQCK5Zej1vaajKqy
|
|
| zc3QTBJqzPG+n1gNi6K1dcSJcPNbb62mV1UY3XPgNIc/IwzV3I9DzPyNOVRCNYGc
|
|
| S9879Y2jhyoTMS8iFg2VfH0tjnYsTbIiI1z9Zr2R5n8DKxcZbyzvCR618cKJG04M
|
|
| t+RdfmfZNX2j8nvrDmwZdH97SoyvkDXWwBVG99OJarNpqpBE7Rm+BxEwzv1MWhY3
|
|
| IjkK4Ezy8xNqoJjj69wC+S8VVJ+ZqAlL7rZjUR3iQgNthvNyzLd0tknJO0tWsgzd
|
|
| DzZ5090yUDH7km5SJJq0N2WuHMCpUnlL+25SUaSXLnI9blwD1Vnmdub6cjrDIeyO
|
|
| rWBgpRaT
|
|
|_-----END CERTIFICATE-----
|
|
| http-useragent-tester:
|
|
| Status for browser useragent: 404
|
|
| Allowed User Agents:
|
|
| Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)
|
|
| libwww
|
|
| lwp-trivial
|
|
| libcurl-agent/1.0
|
|
| PHP/
|
|
| Python-urllib/2.5
|
|
| GT::WWW
|
|
| Snoopy
|
|
| MFC_Tear_Sample
|
|
| HTTP::Lite
|
|
| PHPCrawl
|
|
| URI::Fetch
|
|
| Zend_Http_Client
|
|
| http client
|
|
| PECL::HTTP
|
|
| Wget/1.13.4 (linux-gnu)
|
|
|_ WWW-Mechanize/1.34
|
|
|_http-comments-displayer: Couldn't find any comments.
|
|
|_http-drupal-enum: Nothing found amongst the top 100 resources,use --script-args number=<number|all> for deeper analysis)
|
|
| http-errors:
|
|
| Spidering limited to: maxpagecount=40; withinhost=edge.lan.ddnsgeek.com
|
|
| Found the following error pages:
|
|
|
|
|
| Error Code: 404
|
|
|_ http://edge.lan.ddnsgeek.com:443/
|
|
|_http-wordpress-enum: Nothing found amongst the top 100 resources,use --script-args search-limit=<number|all> for deeper analysis)
|
|
|_http-jsonp-detection: Couldn't find any JSONP endpoints.
|
|
|_http-csrf: Couldn't find any CSRF vulnerabilities.
|
|
|_http-devframework: Couldn't determine the underlying framework or CMS. Try increasing 'httpspider.maxpagecount' value to spider more pages.
|
|
|_http-mobileversion-checker: No mobile version detected.
|
|
|
|
Read data files from: /usr/share/nmap
|
|
Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
|
|
# Nmap done at Tue Apr 14 03:31:09 2026 -- 1 IP address (1 host up) scanned in 315.49 seconds
|