Typical Scenario - data gathering
- IP space, names, mail servers, contact information
- management, topology and gateway data
- (scotty) discover {-smtp | icmp}
- ping, traceroute
- information about hosts
- strobe -b1 -e1024 $host
- nslookup $host
- satan (tcp_scan, udp_scan),saint, mscan, scotty, netcat, queso, nmap, dig, etc. etc
-