# 113 - Pentesting Ident
{% hint style="success" %}
Learn & practice AWS Hacking:[**HackTricks Training AWS Red Team Expert (ARTE)**](https://training.hacktricks.xyz/courses/arte)\
Learn & practice GCP Hacking: [**HackTricks Training GCP Red Team Expert (GRTE)**](https://training.hacktricks.xyz/courses/grte)
Support HackTricks
* Check the [**subscription plans**](https://github.com/sponsors/carlospolop)!
* **Join the** ๐ฌ [**Discord group**](https://discord.gg/hRep4RUj7f) or the [**telegram group**](https://t.me/peass) or **follow** us on **Twitter** ๐ฆ [**@hacktricks\_live**](https://twitter.com/hacktricks\_live)**.**
* **Share hacking tricks by submitting PRs to the** [**HackTricks**](https://github.com/carlospolop/hacktricks) and [**HackTricks Cloud**](https://github.com/carlospolop/hacktricks-cloud) github repos.
{% endhint %}
Use [**Trickest**](https://trickest.com/?utm_source=hacktricks&utm_medium=text&utm_campaign=ppc&utm_content=113-pentesting-ident) to easily build and **automate workflows** powered by the world's **most advanced** community tools.\
Get Access Today:
{% embed url="https://trickest.com/?utm_source=hacktricks&utm_medium=banner&utm_campaign=ppc&utm_content=113-pentesting-ident" %}
## Basic Information
**Ident ํ๋กํ ์ฝ**์ **์ธํฐ๋ท**์ ํตํด ํน์ ์ฌ์ฉ์์ **TCP ์ฐ๊ฒฐ**์ ์ฐ๊ฒฐํ๋ ๋ฐ ์ฌ์ฉ๋ฉ๋๋ค. ์๋๋ **๋คํธ์ํฌ ๊ด๋ฆฌ** ๋ฐ **๋ณด์**์ ๋๊ธฐ ์ํด ์ค๊ณ๋์์ผ๋ฉฐ, ์๋ฒ๊ฐ ํฌํธ 113์์ ํด๋ผ์ด์ธํธ์๊ฒ ํน์ TCP ์ฐ๊ฒฐ์ ์ฌ์ฉ์์ ๋ํ ์ ๋ณด๋ฅผ ์์ฒญํ๋ ๋ฐฉ์์ผ๋ก ์๋ํฉ๋๋ค.
๊ทธ๋ฌ๋ ํ๋์ ๊ฐ์ธ ์ ๋ณด ๋ณดํธ ๋ฌธ์ ์ ์ค์ฉ ๊ฐ๋ฅ์ฑ์ผ๋ก ์ธํด ์ฌ์ฉ์ด ๊ฐ์ํ์์ผ๋ฉฐ, ์ด๋ ๋ฌด๋จ ๋น์ฌ์์๊ฒ ์ฌ์ฉ์ ์ ๋ณด๋ฅผ ์ฐ์ฐํ ๋
ธ์ถํ ์ ์์ต๋๋ค. ์ด๋ฌํ ์ํ์ ์ํํ๊ธฐ ์ํด ์ํธํ๋ ์ฐ๊ฒฐ ๋ฐ ์๊ฒฉํ ์ ๊ทผ ์ ์ด์ ๊ฐ์ ๊ฐํ๋ ๋ณด์ ์กฐ์น๋ฅผ ๊ถ์ฅํฉ๋๋ค.
**๊ธฐ๋ณธ ํฌํธ:** 113
```
PORT STATE SERVICE
113/tcp open ident
```
## **์ด๊ฑฐ**
### **์๋ - ์ฌ์ฉ์ ๊ฐ์ ธ์ค๊ธฐ/์๋น์ค ์๋ณ**
๋ง์ฝ ๋จธ์ ์ด ident์ samba (445) ์๋น์ค๋ฅผ ์คํ ์ค์ด๊ณ , ํฌํธ 43218์ ์ฌ์ฉํ์ฌ samba์ ์ฐ๊ฒฐ๋์ด ์๋ค๋ฉด, ๋ค์์ ํตํด samba ์๋น์ค๋ฅผ ์คํ ์ค์ธ ์ฌ์ฉ์๋ฅผ ํ์ธํ ์ ์์ต๋๋ค:
![](<../.gitbook/assets/image (843).png>)
์๋น์ค์ ์ฐ๊ฒฐํ ๋ ๊ทธ๋ฅ Enter๋ฅผ ๋๋ฅด๋ฉด:
![](<../.gitbook/assets/image (159).png>)
๋ค๋ฅธ ์ค๋ฅ:
![](<../.gitbook/assets/image (359).png>)
### Nmap
๊ธฐ๋ณธ์ ์ผ๋ก (\`-sC\`\`) nmap์ ์คํ ์ค์ธ ๋ชจ๋ ํฌํธ์ ๋ชจ๋ ์ฌ์ฉ์๋ฅผ ์๋ณํฉ๋๋ค:
```
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 4.3p2 Debian 9 (protocol 2.0)
|_auth-owners: root
| ssh-hostkey:
| 1024 88:23:98:0d:9d:8a:20:59:35:b8:14:12:14:d5:d0:44 (DSA)
|_ 2048 6b:5d:04:71:76:78:56:96:56:92:a8:02:30:73:ee:fa (RSA)
113/tcp open ident
|_auth-owners: identd
139/tcp open netbios-ssn Samba smbd 3.X - 4.X (workgroup: LOCAL)
|_auth-owners: root
445/tcp open netbios-ssn Samba smbd 3.0.24 (workgroup: LOCAL)
|_auth-owners: root
```
### Ident-user-enum
[**Ident-user-enum**](https://github.com/pentestmonkey/ident-user-enum)์ ๋์ ์์คํ
์ ๊ฐ TCP ํฌํธ์์ ์์ ๋๊ธฐ ์ค์ธ ํ๋ก์ธ์ค์ ์์ ์๋ฅผ ํ์ธํ๊ธฐ ์ํด ident ์๋น์ค(113/TCP)๋ฅผ ์ฟผ๋ฆฌํ๋ ๊ฐ๋จํ PERL ์คํฌ๋ฆฝํธ์
๋๋ค. ์์ง๋ ์ฌ์ฉ์ ์ด๋ฆ ๋ชฉ๋ก์ ๋ค๋ฅธ ๋คํธ์ํฌ ์๋น์ค์ ๋ํ ๋น๋ฐ๋ฒํธ ์ถ์ธก ๊ณต๊ฒฉ์ ์ฌ์ฉ๋ ์ ์์ต๋๋ค. `apt install ident-user-enum`์ผ๋ก ์ค์นํ ์ ์์ต๋๋ค.
```
root@kali:/opt/local/recon/192.168.1.100# ident-user-enum 192.168.1.100 22 113 139 445
ident-user-enum v1.0 ( http://pentestmonkey.net/tools/ident-user-enum )
192.168.1.100:22 root
192.168.1.100:113 identd
192.168.1.100:139 root
192.168.1.100:445 root
```
### Shodan
* `oident`
## Files
identd.conf
[**Trickest**](https://trickest.com/?utm_source=hacktricks&utm_medium=text&utm_campaign=ppc&utm_content=113-pentesting-ident)๋ฅผ ์ฌ์ฉํ์ฌ ์ธ๊ณ์์ **๊ฐ์ฅ ์ง๋ณด๋** ์ปค๋ฎค๋ํฐ ๋๊ตฌ๋ก ๊ตฌ๋๋๋ **์ํฌํ๋ก์ฐ**๋ฅผ ์ฝ๊ฒ ๊ตฌ์ถํ๊ณ **์๋ํ**ํ์ธ์.\
์ค๋ ๋ฐ๋ก ์ ๊ทผํ์ธ์:
{% embed url="https://trickest.com/?utm_source=hacktricks&utm_medium=banner&utm_campaign=ppc&utm_content=113-pentesting-ident" %}
## HackTricks ์๋ ๋ช
๋ น
```
Protocol_Name: Ident #Protocol Abbreviation if there is one.
Port_Number: 113 #Comma separated if there is more than one.
Protocol_Description: Identification Protocol #Protocol Abbreviation Spelled out
Entry_1:
Name: Notes
Description: Notes for Ident
Note: |
The Ident Protocol is used over the Internet to associate a TCP connection with a specific user. Originally designed to aid in network management and security, it operates by allowing a server to query a client on port 113 to request information about the user of a particular TCP connection.
https://book.hacktricks.xyz/pentesting/113-pentesting-ident
Entry_2:
Name: Enum Users
Description: Enumerate Users
Note: apt install ident-user-enum ident-user-enum {IP} 22 23 139 445 (try all open ports)
```
{% hint style="success" %}
AWS ํดํน ๋ฐฐ์ฐ๊ธฐ ๋ฐ ์ฐ์ตํ๊ธฐ:[**HackTricks Training AWS Red Team Expert (ARTE)**](https://training.hacktricks.xyz/courses/arte)\
GCP ํดํน ๋ฐฐ์ฐ๊ธฐ ๋ฐ ์ฐ์ตํ๊ธฐ: [**HackTricks Training GCP Red Team Expert (GRTE)**](https://training.hacktricks.xyz/courses/grte)
HackTricks ์ง์ํ๊ธฐ
* [**๊ตฌ๋
๊ณํ**](https://github.com/sponsors/carlospolop) ํ์ธํ๊ธฐ!
* **๐ฌ [**Discord ๊ทธ๋ฃน**](https://discord.gg/hRep4RUj7f) ๋๋ [**ํ
๋ ๊ทธ๋จ ๊ทธ๋ฃน**](https://t.me/peass)์ ์ฐธ์ฌํ๊ฑฐ๋ **Twitter** ๐ฆ [**@hacktricks\_live**](https://twitter.com/hacktricks\_live)**๋ฅผ ํ๋ก์ฐํ์ธ์.**
* **[**HackTricks**](https://github.com/carlospolop/hacktricks) ๋ฐ [**HackTricks Cloud**](https://github.com/carlospolop/hacktricks-cloud) ๊นํ๋ธ ๋ฆฌํฌ์งํ ๋ฆฌ์ PR์ ์ ์ถํ์ฌ ํดํน ํธ๋ฆญ์ ๊ณต์ ํ์ธ์.**
{% endhint %}