Juan Bautista#

  • Número de cuenta: 314275541

Debian#

Imágenes con información del sistema#

información del sistema Debian 1
información del sistema Debian 2

Agregar un bloque de texto preformateado donde se liste la información del sistema para Debian#

root@debian-11:~# uname -a Linux debian-11 5.10.0-11-amd64 #1 SMP Debian 5.10.92-1 (2022-01-18) x86_64 GNU/Linux

root@debian-11:~# cat /etc/os-release PRETTY_NAME="Debian GNU/Linux 11 (bullseye)" NAME="Debian GNU/Linux" VERSION_ID="11" VERSION="11 (bullseye)" VERSION_CODENAME=bullseye ID=debian HOME_URL="https://www.debian.org/" SUPPORT_URL="https://www.debian.org/support" BUG_REPORT_URL="https://bugs.debian.org/"

root@debian-11:~# cat /etc/debian_version 11.2

root@debian-11:~# lsmod Module Size Used by rfkill 28672 3 snd_intel8x0 49152 2 joydev 28672 0 snd_ac97_codec 180224 1 snd_intel8x0 ac97_bus 16384 1 snd_ac97_codec snd_pcm 135168 2 snd_intel8x0,snd_ac97_codec snd_timer 49152 1 snd_pcm snd 110592 8 snd_intel8x0,snd_timer,snd_ac97_codec,snd_pcm serio_raw 20480 0 sg 36864 0 pcspkr 16384 0 soundcore 16384 1 snd vboxguest 49152 0 ac 16384 0 evdev 28672 10 nfnetlink 16384 0 msr 16384 0 fuse 167936 3 configfs 57344 1 ip_tables 32768 0 x_tables 53248 1 ip_tables autofs4 53248 2 ext4 921600 1 crc16 16384 1 ext4 mbcache 16384 1 ext4 jbd2 151552 1 ext4 crc32c_generic 16384 0 hid_generic 16384 0 usbhid 65536 0 hid 147456 2 usbhid,hid_generic sd_mod 61440 3 t10_pi 16384 1 sd_mod crc_t10dif 20480 1 t10_pi crct10dif_generic 16384 1 sr_mod 28672 0 cdrom 73728 1 sr_mod crct10dif_common 16384 2 crct10dif_generic,crc_t10dif ata_generic 16384 0 ohci_pci 20480 0 ehci_pci 20480 0 vmwgfx 376832 2 ohci_hcd 61440 1 ohci_pci ehci_hcd 98304 1 ehci_pci ahci 40960 2 ata_piix 36864 0 libahci 45056 1 ahci ttm 114688 1 vmwgfx drm_kms_helper 278528 1 vmwgfx usbcore 323584 5 ohci_hcd,ehci_pci,usbhid,ehci_hcd,ohci_pci libata 290816 4 ata_piix,libahci,ahci,ata_generic cec 61440 1 drm_kms_helper scsi_mod 262144 4 sd_mod,libata,sg,sr_mod crc32c_intel 24576 2 psmouse 184320 0 drm 618496 5 vmwgfx,drm_kms_helper,ttm i2c_piix4 28672 0 usb_common 16384 3 ohci_hcd,usbcore,ehci_hcd e1000 155648 0 video 53248 0 button 24576 0

root@debian-11:~# ps afx PID TTY STAT TIME COMMAND 2 ? S 0:00 [kthreadd] 3 ? I< 0:00 _ [rcu_gp] 4 ? I< 0:00 _ [rcu_par_gp] 6 ? I< 0:00 _ [kworker/0:0H-events_highpri] 7 ? I 0:08 _ [kworker/u4:0-events_unbound] 8 ? I< 0:00 _ [mm_percpu_wq] 9 ? S 0:00 _ [rcu_tasks_rude_] 10 ? S 0:00 _ [rcu_tasks_trace] 11 ? S 0:04 _ [ksoftirqd/0] 12 ? I 0:08 _ [rcu_sched] 13 ? S 0:00 _ [migration/0] 15 ? S 0:00 _ [cpuhp/0] 16 ? S 0:00 _ [cpuhp/1] 17 ? S 0:00 _ [migration/1] 18 ? S 0:01 _ [ksoftirqd/1] 20 ? I< 0:00 _ [kworker/1:0H-events_highpri] 23 ? S 0:00 _ [kdevtmpfs] 24 ? I< 0:00 _ [netns] 25 ? S 0:00 _ [kauditd] 26 ? I 0:03 _ [kworker/1:1-ata_sff] 27 ? S 0:00 _ [khungtaskd] 28 ? S 0:00 _ [oom_reaper] 29 ? I< 0:00 _ [writeback] 30 ? S 0:00 _ [kcompactd0] 31 ? SN 0:00 _ [ksmd] 32 ? SN 0:01 _ [khugepaged] 50 ? I< 0:00 _ [kintegrityd] 51 ? I< 0:00 _ [kblockd] 52 ? I< 0:00 _ [blkcg_punt_bio] 53 ? I< 0:00 _ [edac-poller] 54 ? I< 0:00 _ [devfreq_wq] 55 ? I< 0:03 _ [kworker/1:1H-kblockd] 56 ? S 0:00 _ [kswapd0] 57 ? I< 0:00 _ [kthrotld] 58 ? I< 0:00 _ [acpi_thermal_pm] 59 ? I< 0:00 _ [ipv6_addrconf] 68 ? I< 0:00 _ [kstrp] 71 ? I< 0:00 _ [zswap-shrink] 72 ? I< 0:00 _ [kworker/u5:0] 97 ? I< 0:00 _ [kworker/0:1H-kblockd] 113 ? I 0:03 _ [kworker/1:2-events] 115 ? I< 0:00 _ [ata_sff] 116 ? S 0:00 _ [scsi_eh_0] 117 ? I< 0:00 _ [scsi_tmf_0] 118 ? S 0:00 _ [scsi_eh_1] 119 ? S 0:00 _ [scsi_eh_2] 120 ? I< 0:00 _ [scsi_tmf_1] 121 ? I< 0:00 _ [scsi_tmf_2] 124 ? S 0:02 _ [irq/18-vmwgfx] 125 ? I< 0:00 _ [ttm_swap] 126 ? S 0:00 _ [card0-crtc0] 127 ? S 0:00 _ [card0-crtc1] 128 ? S 0:00 _ [card0-crtc2] 129 ? S 0:00 _ [card0-crtc3] 130 ? S 0:00 _ [card0-crtc4] 131 ? S 0:00 _ [card0-crtc5] 132 ? S 0:00 _ [card0-crtc6] 133 ? S 0:00 _ [card0-crtc7] 177 ? S 0:00 _ [jbd2/sda1-8] 178 ? I< 0:00 _ [ext4-rsv-conver] 2878 ? I 0:11 _ [kworker/u4:2-flush-8:0] 2928 ? I 0:00 _ [kworker/0:0-events] 2964 ? I 0:04 _ [kworker/u4:3-events_unbound] 3044 ? I 0:01 _ [kworker/0:1-events] 3050 ? I 0:00 _ [kworker/1:0-ata_sff] 3141 ? I 0:01 _ [kworker/u4:1-flush-8:0] 1 ? Ss 0:07 /sbin/init 215 ? Ss 0:02 /lib/systemd/systemd-journald 248 ? Ss 0:00 /lib/systemd/systemd-udevd 275 ? Ssl 0:00 /lib/systemd/systemd-timesyncd 384 ? Ssl 0:00 /usr/libexec/accounts-daemon 386 ? Ss 0:00 avahi-daemon: running [debian-11.local] 398 ? S 0:00 _ avahi-daemon: chroot helper 388 ? Ss 0:00 /usr/sbin/cron -f 389 ? Ss 0:03 /usr/bin/dbus-daemon --system --address=systemd: -- 390 ? Ssl 0:02 /usr/sbin/NetworkManager --no-daemon 392 ? Ssl 0:05 /usr/libexec/polkitd --no-debug 393 ? Ssl 0:00 /usr/sbin/rsyslogd -n -iNONE 394 ? Ssl 0:00 /usr/libexec/switcheroo-control 395 ? Ss 0:00 /lib/systemd/systemd-logind 396 ? Ssl 0:00 /usr/libexec/udisks2/udisksd 397 ? Ss 0:00 /sbin/wpa_supplicant -u -s -O /run/wpa_supplicant 606 ? Ssl 0:00 /usr/sbin/ModemManager 620 ? Ssl 0:00 /sbin/dhclient -4 -v -i -pf /run/dhclient.enp0s8.pi 679 ? Ssl 0:00 /usr/bin/python3 /usr/share/unattended-upgrades/una 689 ? Ss 0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 star 693 ? Ssl 0:00 /usr/sbin/gdm3 1127 ? Sl 0:00 _ gdm-session-worker [pam/gdm-password] 1193 tty2 Ssl+ 0:00 _ /usr/libexec/gdm-wayland-session /usr/bin/g 1196 tty2 Sl+ 0:00 _ /usr/libexec/gnome-session-binary --sys 768 ? SNsl 0:00 /usr/libexec/rtkit-daemon 856 ? Ssl 0:00 /usr/libexec/upowerd 926 ? Ssl 0:23 /usr/libexec/packagekitd 1056 ? Ssl 0:00 /usr/libexec/colord 1132 ? Ss 0:00 /lib/systemd/systemd --user 1133 ? S 0:00 _ (sd-pam) 1152 ? S<sl 0:00 _ /usr/bin/pipewire 1222 ? S<l 0:00 | _ /usr/bin/pipewire-media-session 1153 ? S<sl 0:05 _ /usr/bin/pulseaudio --daemonize=no --log-target 1155 ? SNsl 0:00 _ /usr/libexec/tracker-miner-fs 1158 ? Ss 0:01 _ /usr/bin/dbus-daemon --session --address=system 1175 ? Ssl 0:00 _ /usr/libexec/gvfsd 2496 ? Sl 0:00 | _ /usr/libexec/gvfsd-trash --spawner :1.3 /or 2577 ? Sl 0:00 | _ /usr/libexec/gvfsd-burn --spawner :1.3 /org 1181 ? Sl 0:00 _ /usr/libexec/gvfsd-fuse /run/user/1000/gvfs -f 1198 ? Ssl 0:00 _ /usr/libexec/gvfs-udisks2-volume-monitor 1210 ? Ssl 0:00 _ /usr/libexec/gvfs-gphoto2-volume-monitor 1227 ? Ssl 0:00 _ /usr/libexec/gvfs-goa-volume-monitor 1232 ? Sl 0:00 _ /usr/libexec/goa-daemon 1250 ? Sl 0:00 _ /usr/libexec/goa-identity-service 1264 ? Ssl 0:00 _ /usr/libexec/gnome-session-ctl --monitor 1265 ? Ssl 0:00 _ /usr/libexec/gvfs-mtp-volume-monitor 1266 ? Ss 0:00 _ ssh-agent -D -a /run/user/1000/openssh_agent 1269 ? Ssl 0:00 _ /usr/libexec/gnome-session-binary --systemd-ser 1298 ? Sl 0:00 | _ /usr/libexec/at-spi-bus-launcher --launch-i 1305 ? S 0:00 | | _ /usr/bin/dbus-daemon --config-file=/usr 1405 ? Sl 0:02 | _ /usr/libexec/evolution-data-server/evolutio 1411 ? Sl 0:00 | _ /usr/libexec/gsd-disk-utility-notify 1415 ? Sl 0:06 | _ /usr/bin/gnome-software --gapplication-serv 1275 ? Ssl 0:00 _ /usr/libexec/gvfs-afc-volume-monitor 1304 ? Ssl 3:12 _ /usr/bin/gnome-shell 1330 ? Sl 0:19 | _ /usr/bin/Xwayland :0 -rootless -noreset -ac 1567 ? Sl 0:07 | _ ibus-daemon --panel disable -r --xim 1577 ? Sl 0:00 | | _ /usr/libexec/ibus-dconf 1578 ? Sl 0:03 | | _ /usr/libexec/ibus-extension-gtk3 1639 ? Sl 0:02 | | _ /usr/libexec/ibus-engine-simple 2644 ? Sl 4:27 | _ /usr/lib/firefox-esr/firefox-esr 2719 ? Sl 0:05 | _ /usr/lib/firefox-esr/firefox-esr -conte 2786 ? Sl 0:04 | _ /usr/lib/firefox-esr/firefox-esr -conte 2890 ? Sl 0:00 | _ /usr/lib/firefox-esr/firefox-esr -conte 2930 ? Sl 1:52 | _ /usr/lib/firefox-esr/firefox-esr -conte 2978 ? Sl 0:00 | _ /usr/lib/firefox-esr/firefox-esr -conte 1350 ? Ssl 0:00 _ /usr/libexec/xdg-permission-store 1352 ? Sl 0:00 _ /usr/libexec/gnome-shell-calendar-server 1363 ? Ssl 0:00 _ /usr/libexec/evolution-source-registry 1373 ? Ssl 0:00 _ /usr/libexec/evolution-calendar-factory 1380 ? Sl 0:00 _ /usr/libexec/at-spi2-registryd --use-gnome-sess 1381 ? Sl 0:00 _ /usr/bin/gjs /usr/share/gnome-shell/org.gnome.S 1390 ? Ssl 0:00 _ /usr/libexec/gsd-a11y-settings 1391 ? Ssl 0:00 _ /usr/libexec/gsd-color 1396 ? Ssl 0:00 _ /usr/libexec/gsd-datetime 1397 ? Sl 0:00 _ /usr/libexec/dconf-service 1398 ? Ssl 0:00 _ /usr/libexec/gsd-housekeeping 1401 ? Ssl 0:00 _ /usr/libexec/gsd-keyboard 1406 ? Ssl 0:00 _ /usr/libexec/gsd-media-keys 1412 ? Ssl 0:00 _ /usr/libexec/gsd-power 1414 ? Ssl 0:00 _ /usr/libexec/gsd-print-notifications 1416 ? Ssl 0:00 _ /usr/libexec/gsd-rfkill 1418 ? Ssl 0:00 _ /usr/libexec/gsd-screensaver-proxy 1423 ? Ssl 0:00 _ /usr/libexec/gsd-sharing 1430 ? Ssl 0:00 _ /usr/libexec/gsd-smartcard 1435 ? Ssl 0:00 _ /usr/libexec/gsd-sound 1437 ? Ssl 0:00 _ /usr/libexec/gsd-usb-protection 1447 ? Ssl 0:00 _ /usr/libexec/gsd-wacom 1488 ? Sl 0:00 _ /usr/libexec/gsd-printer 1490 ? Ssl 0:00 _ /usr/libexec/evolution-addressbook-factory 1568 ? Ssl 0:00 _ /usr/libexec/gsd-xsettings 1581 ? Sl 0:00 _ /usr/libexec/ibus-x11 --kill-daemon 1587 ? Sl 0:00 _ /usr/libexec/ibus-portal 2056 ? Ssl 0:00 _ /usr/libexec/gvfsd-metadata 2452 ? Sl 0:01 _ /usr/bin/gnome-calendar --gapplication-service 2463 ? SLl 0:01 _ /usr/bin/seahorse --gapplication-service 2464 ? Ssl 0:10 _ /usr/libexec/gnome-terminal-server 2584 pts/0 Ss 0:00 _ bash 3149 pts/0 S 0:00 _ sudo -i 3150 pts/0 S 0:00 _ -bash 3167 pts/0 R+ 0:00 _ ps afx 1182 ? Sl 0:00 /usr/bin/gnome-keyring-daemon --daemonize --login 1630 ? Ssl 0:01 /usr/libexec/fwupd/fwupd

root@debian-11:~# hostname -I 10.0.2.15 192.168.66.3

root@debian-11:~# ip addr 1: lo: mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000 link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 inet 127.0.0.1/8 scope host lo valid_lft forever preferred_lft forever inet6 ::1/128 scope host valid_lft forever preferred_lft forever 2: enp0s3: mtu 1500 qdisc pfifo_fast state UP group default qlen 1000 link/ether 08:00:27:5a:58:66 brd ff:ff:ff:ff:ff:ff inet 10.0.2.15/24 brd 10.0.2.255 scope global dynamic noprefixroute enp0s3 valid_lft 85284sec preferred_lft 85284sec inet6 fe80::a00:27ff:fe5a:5866/64 scope link noprefixroute valid_lft forever preferred_lft forever 3: enp0s8: mtu 1500 qdisc pfifo_fast state UP group default qlen 1000 link/ether 08:00:27:c3:cd:f8 brd ff:ff:ff:ff:ff:ff inet 192.168.66.3/24 brd 192.168.66.255 scope global dynamic enp0s8 valid_lft 451sec preferred_lft 451sec inet6 fe80::a00:27ff:fec3:cdf8/64 scope link valid_lft forever preferred_lft forever

root@debian-11:~# ip route show default via 10.0.2.2 dev enp0s3 proto dhcp metric 100 10.0.2.0/24 dev enp0s3 proto kernel scope link src 10.0.2.15 metric 100 192.168.66.0/24 dev enp0s8 proto kernel scope link src 192.168.66.3

root@debian-11:~# cat /etc/resolv.conf # Generated by NetworkManager search huawei.net nameserver 192.168.0.1

root@debian-11:~# netstat -ntulp Active Internet connections (only servers) Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
tcp 0 0 0.0.0.0:22 0.0.0.0: LISTEN 689/sshd: /usr/sbin tcp6 0 0 :::22 ::: LISTEN 689/sshd: /usr/sbin udp 0 0 0.0.0.0:60183 0.0.0.0: 386/avahi-daemon: r udp 0 0 0.0.0.0:54235 0.0.0.0: 2644/firefox-esr
udp 0 0 0.0.0.0:68 0.0.0.0: 620/dhclient
udp 0 0 0.0.0.0:5353 0.0.0.0:
386/avahi-daemon: r udp6 0 0 :::58875 ::: 386/avahi-daemon: r udp6 0 0 :::5353 ::: 386/avahi-daemon: r

root@debian-11:~# ping -c 4 1.1.1.1 PING 1.1.1.1 (1.1.1.1): 56 data bytes 64 bytes from 1.1.1.1: icmp_seq=0 ttl=57 time=45.344 ms 64 bytes from 1.1.1.1: icmp_seq=1 ttl=57 time=38.511 ms 64 bytes from 1.1.1.1: icmp_seq=2 ttl=57 time=43.297 ms 64 bytes from 1.1.1.1: icmp_seq=3 ttl=57 time=45.238 ms --- 1.1.1.1 ping statistics --- 4 packets transmitted, 4 packets received, 0% packet loss round-trip min/avg/max/stddev = 38.511/43.097/45.344/2.771 ms

root@debian-11:~# dig example.com. ; <<>> DiG 9.16.22-Debian <<>> example.com. ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 615 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 512 ;; QUESTION SECTION: ;example.com. IN A ;; ANSWER SECTION: example.com. 40694 IN A 93.184.216.34 ;; Query time: 8 msec ;; SERVER: 192.168.0.1#53(192.168.0.1) ;; WHEN: Mon Feb 28 14:06:51 CST 2022 ;; MSG SIZE rcvd: 56 root@debian-11:~#

Listar los privilegios que tiene el usuario normal#

juan@debian-11:~$ getent passwd ${USER} juan: x:1000:1000:Juan Carlos Bautista Sandoval,,,:/home/juan:/bin/bash

juan@debian-11:~$ id uid=1000(juan) gid=1000(juan) groups=1000(juan),24(cdrom),25(floppy),27(sudo),29(audio),30(dip),44(video),46(plugdev),109(netdev),113(bluetooth),118(scanner),124(wireshark)

juan@debian-11:~$ groups juan cdrom floppy sudo audio dip video plugdev netdev bluetooth scanner wireshark

juan@debian-11:~$ sudo -l Matching Defaults entries for juan on debian-11: env_reset, mail_badpass, secure_path=/usr/local/sbin\:/usr/local/bin\:/usr/sbin\:/usr/bin\:/sbin\:/bin User juan may run the following commands on debian-11: (ALL : ALL) NOPASSWD: ALL

juan@debian-11:~$ sudo -i root@debian-11:~#

Agregar un bloque de texto preformateado donde se liste la ubicación de las herramientas que se instalaron en Debian#

root@debian-11:~# which wireshark tcpdump nmap netcat-openbsd ngrep dsniff wget curl whois dnsutils net-tools iproute2 iptables iptables-persistent tsocks inetutils-ping inetutils-traceroute inetutils-tools ethtool /usr/bin/wireshark /usr/bin/tcpdump /usr/bin/nmap /usr/bin/ngrep /usr/sbin/dsniff /usr/bin/wget /usr/bin/curl /usr/bin/whois /usr/sbin/iptables /usr/bin/tsocks /usr/bin/inetutils-traceroute /usr/sbin/ethtool

root@debian-11:~# whereis wireshark tcpdump nmap netcat-openbsd ngrep dsniff wget curl whois dnsutils net-tools iproute2 iptables iptables-persistent tsocks inetutils-ping inetutils-traceroute inetutils-tools ethtool wireshark: /usr/bin/wireshark /usr/lib/x86_64-linux-gnu/wireshark /etc/wireshark /usr/share/wireshark /usr/share/man/man1/wireshark.1.gz tcpdump: /usr/bin/tcpdump /usr/share/man/man8/tcpdump.8.gz nmap: /usr/bin/nmap /usr/share/nmap /usr/share/man/man1/nmap.1.gz netcat-openbsd: ngrep: /usr/bin/ngrep /usr/share/man/man8/ngrep.8.gz dsniff: /usr/sbin/dsniff /usr/share/dsniff /usr/share/man/man8/dsniff.8.gz wget: /usr/bin/wget /usr/share/man/man1/wget.1.gz /usr/share/info/wget.info.gz curl: /usr/bin/curl /usr/share/man/man1/curl.1.gz whois: /usr/bin/whois /usr/share/man/man1/whois.1.gz dnsutils: net-tools: iproute2: /etc/iproute2 /usr/include/iproute2 iptables: /usr/sbin/iptables /etc/iptables /usr/share/iptables /usr/share/man/man8/iptables.8.gz iptables-persistent: tsocks: /usr/bin/tsocks /etc/tsocks.conf /usr/share/man/man1/tsocks.1.gz /usr/share/man/man8/tsocks.8.gz inetutils-ping: inetutils-traceroute: /usr/bin/inetutils-traceroute /usr/share/man/man1/inetutils-traceroute.1.gz inetutils-tools: ethtool: /usr/sbin/ethtool /usr/share/man/man8/ethtool.8.gz

CentOS#

Imágen con información del sistema#

información del sistema CentOS

Agregar un bloque de texto preformateado donde se liste la información del sistema para CentOS#

[root@centos-8 ~]# uname -a Linux centos-8.local 4.18.0-365.el8.x86_64 #1 SMP Thu Feb 10 16:11:23 UTC 2022 x86_64 x86_64 x86_64 GNU/Linux

[root@centos-8 ~]# cat /etc/os-release NAME="CentOS Stream" VERSION="8" ID="centos" ID_LIKE="rhel fedora" VERSION_ID="8" PLATFORM_ID="platform:el8" PRETTY_NAME="CentOS Stream 8" ANSI_COLOR="0;31" CPE_NAME="cpe:/o:centos:centos:8" HOME_URL="https://centos.org/" BUG_REPORT_URL="https://bugzilla.redhat.com/" REDHAT_SUPPORT_PRODUCT="Red Hat Enterprise Linux 8" REDHAT_SUPPORT_PRODUCT_VERSION="CentOS Stream"

[root@centos-8 ~]# cat /etc/redhat-release CentOS Stream release 8

[root@centos-8 ~]# lsmod Module Size Used by nls_utf8 16384 1 isofs 49152 1 uinput 20480 0 vboxvideo 32768 0 drm_vram_helper 20480 1 vboxvideo drm_ttm_helper 16384 2 drm_vram_helper,vboxvideo xt_CHECKSUM 16384 1 ipt_MASQUERADE 16384 3 xt_conntrack 16384 1 ipt_REJECT 16384 2 nft_compat 20480 16 nf_nat_tftp 16384 0 nft_objref 16384 1 nf_conntrack_tftp 16384 3 nf_nat_tftp nft_counter 16384 33 bridge 278528 0 stp 16384 1 bridge llc 16384 2 bridge,stp nft_fib_inet 16384 1 nft_fib_ipv4 16384 1 nft_fib_inet nft_fib_ipv6 16384 1 nft_fib_inet nft_fib 16384 3 nft_fib_ipv6,nft_fib_ipv4,nft_fib_inet nft_reject_inet 16384 5 nf_reject_ipv4 16384 2 nft_reject_inet,ipt_REJECT nf_reject_ipv6 16384 1 nft_reject_inet nft_reject 16384 1 nft_reject_inet nft_ct 20480 18 nf_tables_set 49152 20 nft_chain_nat 16384 12 nf_nat 45056 3 ipt_MASQUERADE,nf_nat_tftp,nft_chain_nat nf_conntrack 172032 6 xt_conntrack,nf_nat,nf_conntrack_tftp,nft_ct,ipt_MASQUERADE,nf_nat_tftp nf_defrag_ipv6 20480 1 nf_conntrack nf_defrag_ipv4 16384 1 nf_conntrack ip_set 49152 0 nf_tables 180224 480 nft_ct,nft_compat,nft_reject_inet,nft_fib_ipv6,nft_objref,nft_fib_ipv4,nft_counter,nft_chain_nat,nf_tables_set,nft_reject,nft_fib,nft_fib_inet nfnetlink 16384 4 nft_compat,nf_tables,ip_set sunrpc 565248 1 snd_intel8x0 45056 3 snd_ac97_codec 143360 1 snd_intel8x0 ac97_bus 16384 1 snd_ac97_codec snd_seq 81920 0 snd_seq_device 16384 1 snd_seq snd_pcm 118784 2 snd_intel8x0,snd_ac97_codec snd_timer 36864 2 snd_seq,snd_pcm snd 98304 12 snd_seq,snd_seq_device,snd_intel8x0,snd_timer,snd_ac97_codec,snd_pcm pcspkr 16384 0 i2c_piix4 24576 0 soundcore 16384 1 snd video 49152 0 xfs 1552384 2 libcrc32c 16384 4 nf_conntrack,nf_nat,nf_tables,xfs sd_mod 53248 3 t10_pi 16384 1 sd_mod sr_mod 28672 1 cdrom 65536 2 isofs,sr_mod sg 40960 0 ata_generic 16384 0 vmwgfx 372736 2 ttm 73728 3 vmwgfx,drm_vram_helper,drm_ttm_helper drm_kms_helper 266240 3 vmwgfx,drm_vram_helper,vboxvideo syscopyarea 16384 1 drm_kms_helper sysfillrect 16384 1 drm_kms_helper sysimgblt 16384 1 drm_kms_helper fb_sys_fops 16384 1 drm_kms_helper drm 585728 8 vmwgfx,drm_kms_helper,drm_vram_helper,vboxvideo,drm_ttm_helper,ttm ahci 40960 2 ata_piix 36864 1 libahci 40960 1 ahci libata 262144 4 ata_piix,libahci,ahci,ata_generic e1000 151552 0 crc32c_intel 24576 1 serio_raw 16384 0 dm_mirror 28672 0 dm_region_hash 20480 1 dm_mirror dm_log 20480 2 dm_region_hash,dm_mirror dm_mod 151552 9 dm_log,dm_mirror ipmi_devintf 20480 0 ipmi_msghandler 110592 1 ipmi_devintf fuse 155648 3

[root@centos-8 ~]# ps afx PID TTY STAT TIME COMMAND 2 ? S 0:00 [kthreadd] 3 ? I< 0:00 _ [rcu_gp] 4 ? I< 0:00 _ [rcu_par_gp] 5 ? I 0:01 _ [kworker/0:0-cgroup_destroy] 6 ? I< 0:00 _ [kworker/0:0H-events_highpri] 7 ? I 0:01 _ [kworker/u4:0-events_unbound] 8 ? I< 0:00 _ [mm_percpu_wq] 9 ? S 0:00 _ [rcu_tasks_rude_] 10 ? S 0:00 _ [rcu_tasks_trace] 11 ? S 0:01 _ [ksoftirqd/0] 12 ? R 0:07 _ [rcu_sched] 13 ? S 0:00 _ [migration/0] 14 ? S 0:00 _ [watchdog/0] 15 ? S 0:00 _ [cpuhp/0] 16 ? S 0:00 _ [cpuhp/1] 17 ? S 0:00 _ [watchdog/1] 18 ? S 0:00 _ [migration/1] 19 ? S 0:01 _ [ksoftirqd/1] 20 ? I 0:03 _ [kworker/1:0-events_power_efficient] 21 ? I< 0:00 _ [kworker/1:0H-events_highpri] 23 ? I 0:01 _ [kworker/u4:1-events_unbound] 24 ? S 0:00 _ [kdevtmpfs] 25 ? I< 0:00 _ [netns] 26 ? S 0:00 _ [kauditd] 28 ? I 0:02 _ [kworker/0:1-cgroup_destroy] 29 ? S 0:00 _ [khungtaskd] 30 ? S 0:00 _ [oom_reaper] 31 ? I< 0:00 _ [writeback] 32 ? S 0:00 _ [kcompactd0] 33 ? SN 0:00 _ [ksmd] 34 ? SN 0:01 _ [khugepaged] 35 ? I< 0:00 _ [crypto] 36 ? I< 0:00 _ [kintegrityd] 37 ? I< 0:00 _ [kblockd] 38 ? I< 0:00 _ [blkcg_punt_bio] 39 ? I< 0:00 _ [tpm_dev_wq] 40 ? I< 0:00 _ [md] 41 ? I< 0:00 _ [edac-poller] 42 ? S 0:00 _ [watchdogd] 43 ? I< 0:01 _ [kworker/0:1H-xfs-log/dm-0] 56 ? S 0:01 _ [kswapd0] 89 ? I 0:01 _ [kworker/u4:2-events_unbound] 159 ? I< 0:00 _ [kthrotld] 160 ? I< 0:00 _ [acpi_thermal_pm] 161 ? I< 0:00 _ [kmpath_rdacd] 162 ? I< 0:00 _ [kaluad] 164 ? I< 0:01 _ [kworker/1:1H-kblockd] 165 ? I< 0:00 _ [ipv6_addrconf] 166 ? I< 0:00 _ [kstrp] 396 ? I< 0:00 _ [ata_sff] 397 ? S 0:00 _ [scsi_eh_0] 398 ? I< 0:00 _ [scsi_tmf_0] 399 ? S 0:00 _ [scsi_eh_1] 400 ? I< 0:00 _ [scsi_tmf_1] 401 ? S 0:00 _ [scsi_eh_2] 402 ? I< 0:00 _ [scsi_tmf_2] 429 ? I< 0:00 _ [ttm_swap] 430 ? S 0:02 _ [irq/18-vmwgfx] 432 ? S 0:00 _ [card0-crtc0] 434 ? S 0:00 _ [card0-crtc1] 435 ? S 0:00 _ [card0-crtc2] 436 ? S 0:00 _ [card0-crtc3] 437 ? S 0:00 _ [card0-crtc4] 438 ? S 0:00 _ [card0-crtc5] 439 ? S 0:00 _ [card0-crtc6] 440 ? S 0:00 _ [card0-crtc7] 489 ? I< 0:00 _ [kdmflush/253:0] 498 ? I< 0:00 _ [kdmflush/253:1] 509 ? I 0:03 _ [kworker/1:4-cgroup_pidlist_destroy] 524 ? I< 0:00 _ [xfsalloc] 526 ? I< 0:00 _ [xfs_mru_cache] 527 ? I< 0:00 _ [xfs-buf/dm-0] 528 ? I< 0:00 _ [xfs-conv/dm-0] 529 ? I< 0:00 _ [xfs-cil/dm-0] 530 ? I< 0:00 _ [xfs-reclaim/dm-] 531 ? I< 0:00 _ [xfs-eofblocks/d] 532 ? I< 0:00 _ [xfs-log/dm-0] 533 ? S 0:01 _ [xfsaild/dm-0] 726 ? I< 0:00 _ [xfs-buf/sda1] 727 ? I< 0:00 _ [xfs-conv/sda1] 728 ? I< 0:00 _ [xfs-cil/sda1] 729 ? I< 0:00 _ [xfs-reclaim/sda] 730 ? I< 0:00 _ [xfs-eofblocks/s] 731 ? I< 0:00 _ [xfs-log/sda1] 732 ? S 0:00 _ [xfsaild/sda1] 760 ? I< 0:00 _ [rpciod] 761 ? I< 0:00 _ [kworker/u5:0] 762 ? I< 0:00 _ [xprtiod] 1594 ? I 0:01 _ [kworker/0:4-cgroup_pidlist_destroy] 3764 ? I 0:01 _ [kworker/u4:3-events_unbound] 3862 ? I 0:00 _ [kworker/1:1-cgroup_destroy] 3865 ? I 0:00 _ [kworker/0:2-events] 3936 ? I 0:00 _ [kworker/1:2-ata_sff] 1 ? Ss 0:12 /usr/lib/systemd/systemd --switched-root --system - 630 ? Ss 0:02 /usr/lib/systemd/systemd-journald 670 ? Ss 0:01 /usr/lib/systemd/systemd-udevd 754 ? Ss 0:00 /usr/bin/rpcbind -w -f 758 ? S<sl 0:00 /sbin/auditd 765 ? S< 0:00 _ /usr/sbin/sedispatch 787 ? Ssl 0:00 /usr/libexec/udisks2/udisksd 788 ? Ss 0:00 /usr/sbin/smartd -n -q never 791 ? Ssl 0:18 /usr/lib/polkit-1/polkitd --no-debug 793 ? Ss 0:00 avahi-daemon: running [centos-8.local] 852 ? S 0:00 _ avahi-daemon: chroot helper 796 ? Ss 0:00 /usr/lib/systemd/systemd-machined 797 ? Ssl 0:06 /usr/bin/dbus-daemon --system --address=systemd: -- 798 ? Ss 0:00 /usr/bin/lsmd -d 800 ? Ss 0:00 /usr/sbin/sssd -i --logger=files 853 ? S 0:01 _ /usr/libexec/sssd/sssd_be --domain implicit_fil 856 ? S 0:02 _ /usr/libexec/sssd/sssd_nss --uid 0 --gid 0 --lo 803 ? SNsl 0:00 /usr/libexec/rtkit-daemon 804 ? SNs 0:00 /usr/sbin/alsactl -s -n 19 -c -E ALSA_CONFIG_PATH=/ 806 ? S 0:00 /usr/sbin/chronyd 808 ? Ssl 0:00 /usr/sbin/irqbalance --foreground 819 ? S 0:00 /bin/bash /usr/sbin/ksmtuned 3888 ? S 0:00 _ sleep 60 862 ? Ssl 0:05 /usr/libexec/platform-python -s /usr/sbin/firewalld 863 ? Ssl 0:01 /usr/sbin/ModemManager 872 ? Ssl 0:00 /usr/libexec/accounts-daemon 875 ? Ss 0:01 /usr/lib/systemd/systemd-logind 1084 ? Ssl 0:01 /usr/sbin/NetworkManager --no-daemon 1105 ? Ss 0:00 /usr/sbin/sshd -D -oCiphers=aes256-gcm@openssh.com, 1106 ? Ssl 0:17 /usr/libexec/platform-python -Es /usr/sbin/tuned -l 1111 ? Ss 0:00 /usr/sbin/cupsd -l 1122 ? Ssl 0:00 /usr/sbin/gssproxy -D 1598 ? Ssl 0:00 /usr/sbin/rsyslogd -n 1606 ? Ss 0:00 /usr/sbin/atd -f 1609 ? Ss 0:00 /usr/sbin/crond -n 2149 ? S 0:00 /usr/sbin/dnsmasq --conf-file=/var/lib/libvirt/dnsm 2152 ? S 0:00 _ /usr/sbin/dnsmasq --conf-file=/var/lib/libvirt/ 2560 ? Ssl 0:00 /usr/sbin/gdm 2903 ? Sl 0:00 _ gdm-session-worker [pam/gdm-password] 2946 tty2 Ssl+ 0:00 _ /usr/libexec/gdm-wayland-session --register 2953 tty2 Sl+ 0:01 _ /usr/libexec/gnome-session-binary 3019 tty2 Sl+ 1:33 _ /usr/bin/gnome-shell 3065 tty2 S+ 0:00 | _ /usr/bin/Xwayland :0 -rootless 3086 tty2 Sl 0:02 | _ ibus-daemon --xim --panel disab 3090 tty2 Sl 0:00 | _ /usr/libexec/ibus-dconf 3091 tty2 Sl 0:02 | _ /usr/libexec/ibus-extension 3289 tty2 Sl 0:00 | _ /usr/libexec/ibus-engine-si 3181 tty2 Sl+ 0:00 _ /usr/libexec/gsd-power 3182 tty2 Sl+ 0:00 _ /usr/libexec/gsd-print-notification 3184 tty2 Sl+ 0:00 _ /usr/libexec/gsd-rfkill 3186 tty2 Sl+ 0:00 _ /usr/libexec/gsd-screensaver-proxy 3189 tty2 Sl+ 0:00 _ /usr/libexec/gsd-sharing 3198 tty2 Sl+ 0:00 _ /usr/libexec/gsd-sound 3200 tty2 Sl+ 0:00 _ /usr/libexec/gsd-xsettings 3204 tty2 Sl+ 0:00 _ /usr/libexec/gsd-wacom 3205 tty2 Sl+ 0:00 _ /usr/libexec/gsd-smartcard 3213 tty2 Sl+ 0:00 _ /usr/libexec/gsd-account 3225 tty2 Sl+ 0:00 _ /usr/libexec/gsd-a11y-settings 3227 tty2 Sl+ 0:00 _ /usr/libexec/gsd-clipboard 3229 tty2 Sl+ 0:00 _ /usr/libexec/gsd-color 3232 tty2 Sl+ 0:00 _ /usr/libexec/gsd-datetime 3235 tty2 Sl+ 0:00 _ /usr/libexec/gsd-housekeeping 3237 tty2 Sl+ 0:00 _ /usr/libexec/gsd-keyboard 3240 tty2 Sl+ 0:00 _ /usr/libexec/gsd-media-keys 3246 tty2 Sl+ 0:00 _ /usr/libexec/gsd-mouse 3400 tty2 Sl+ 0:04 _ /usr/bin/gnome-software --gapplicat 3404 tty2 Sl+ 0:00 _ /usr/libexec/gsd-disk-utility-notif 3422 tty2 SNl+ 0:00 _ /usr/libexec/tracker-miner-apps 3425 tty2 SNl+ 0:00 _ /usr/libexec/tracker-miner-fs 2721 ? Ssl 0:00 /usr/libexec/upowerd 2736 ? Ssl 0:23 /usr/libexec/packagekitd 2739 ? Ss 0:00 /usr/sbin/wpa_supplicant -c /etc/wpa_supplicant/wpa 2797 ? Ssl 0:00 /usr/libexec/colord 2913 ? Ss 0:00 /usr/lib/systemd/systemd --user 2918 ? S 0:00 _ (sd-pam) 2935 ? S<sl 0:01 _ /usr/bin/pulseaudio --daemonize=no --log-target 2948 ? Ssl 0:01 _ /usr/bin/dbus-daemon --session --address=system 3046 ? Ssl 0:00 _ /usr/libexec/gvfsd 3054 ? Sl 0:00 _ /usr/libexec/gvfsd-fuse /run/user/1000/gvfs -f 3070 ? Ssl 0:00 _ /usr/libexec/at-spi-bus-launcher 3075 ? Sl 0:00 | _ /usr/bin/dbus-daemon --config-file=/usr/sha 3080 ? Sl 0:00 _ /usr/libexec/at-spi2-registryd --use-gnome-sess 3093 ? Ssl 0:00 _ /usr/libexec/xdg-permission-store 3098 ? Sl 0:00 _ /usr/libexec/ibus-portal 3112 ? Sl 0:00 _ /usr/libexec/gnome-shell-calendar-server 3119 ? Ssl 0:00 _ /usr/libexec/evolution-source-registry 3130 ? Sl 0:00 _ /usr/libexec/goa-daemon 3141 ? Ssl 0:00 _ /usr/libexec/gvfs-udisks2-volume-monitor 3148 ? Ssl 0:00 _ /usr/libexec/gvfs-mtp-volume-monitor 3152 ? Ssl 0:00 _ /usr/libexec/gvfs-gphoto2-volume-monitor 3156 ? Ssl 0:00 _ /usr/libexec/gvfs-afc-volume-monitor 3161 ? Ssl 0:00 _ /usr/libexec/gvfs-goa-volume-monitor 3170 ? Sl 0:00 _ /usr/libexec/goa-identity-service 3209 ? Ssl 0:00 _ /usr/libexec/evolution-calendar-factory 3294 ? Sl 0:00 | _ /usr/libexec/evolution-calendar-factory-sub 3317 ? Sl 0:00 _ /usr/libexec/dconf-service 3321 ? Ssl 0:00 _ /usr/libexec/evolution-addressbook-factory 3360 ? Sl 0:00 | _ /usr/libexec/evolution-addressbook-factory- 3439 ? Ssl 0:01 _ /usr/libexec/tracker-store 3820 ? Ssl 0:02 _ /usr/libexec/gnome-terminal-server 3825 pts/0 Ss 0:00 _ bash 3874 pts/0 S 0:00 _ su - 3893 pts/0 S 0:00 _ -bash 3943 pts/0 R+ 0:00 _ ps afx 2939 ? Sl 0:00 /usr/bin/gnome-keyring-daemon --daemonize --login 3094 tty2 Sl 0:00 /usr/libexec/ibus-x11 --kill-daemon 3178 ? Ss 0:01 /usr/libexec/sssd/sssd_kcm --uid 0 --gid 0 --logger 3291 tty2 Sl+ 0:00 /usr/libexec/gsd-printer 3564 ? Ssl 0:01 /usr/libexec/fwupd/fwupd

[root@centos-8 ~]# hostname -I 10.0.2.15 192.168.66.4 192.168.122.1

[root@centos-8 ~]# ip addr 1: lo: mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000 link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 inet 127.0.0.1/8 scope host lo valid_lft forever preferred_lft forever inet6 ::1/128 scope host valid_lft forever preferred_lft forever 2: enp0s3: mtu 1500 qdisc fq_codel state UP group default qlen 1000 link/ether 08:00:27:09:00:78 brd ff:ff:ff:ff:ff:ff inet 10.0.2.15/24 brd 10.0.2.255 scope global dynamic noprefixroute enp0s3 valid_lft 85865sec preferred_lft 85865sec inet6 fe80::a00:27ff:fe09:78/64 scope link noprefixroute valid_lft forever preferred_lft forever 3: enp0s8: mtu 1500 qdisc fq_codel state UP group default qlen 1000 link/ether 08:00:27:36:5a:a0 brd ff:ff:ff:ff:ff:ff inet 192.168.66.4/24 brd 192.168.66.255 scope global dynamic noprefixroute enp0s8 valid_lft 365sec preferred_lft 365sec inet6 fe80::a00:27ff:fe36:5aa0/64 scope link valid_lft forever preferred_lft forever 4: virbr0: mtu 1500 qdisc noqueue state DOWN group default qlen 1000 link/ether 52:54:00:e5:0b:3f brd ff:ff:ff:ff:ff:ff inet 192.168.122.1/24 brd 192.168.122.255 scope global virbr0 valid_lft forever preferred_lft forever

[root@centos-8 ~]# ip route show default via 10.0.2.2 dev enp0s3 proto dhcp metric 100 10.0.2.0/24 dev enp0s3 proto kernel scope link src 10.0.2.15 metric 100 192.168.66.0/24 dev enp0s8 proto kernel scope link src 192.168.66.4 metric 101 192.168.122.0/24 dev virbr0 proto kernel scope link src 192.168.122.1 linkdown

[root@centos-8 ~]# cat /etc/resolv.conf # Generated by NetworkManager search huawei.net local nameserver 192.168.0.1

[root@centos-8 ~]# netstat -ntulp Active Internet connections (only servers) Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
tcp 0 0 0.0.0.0:111 0.0.0.0: LISTEN 1/systemd
tcp 0 0 192.168.122.1:53 0.0.0.0:
LISTEN 2149/dnsmasq
tcp 0 0 0.0.0.0:22 0.0.0.0: LISTEN 1105/sshd
tcp 0 0 127.0.0.1:631 0.0.0.0:
LISTEN 1111/cupsd
tcp6 0 0 :::111 ::: LISTEN 1/systemd
tcp6 0 0 :::22 :::
LISTEN 1105/sshd
tcp6 0 0 ::1:631 ::: LISTEN 1111/cupsd
udp 0 0 0.0.0.0:5353 0.0.0.0:
793/avahi-daemon: r udp 0 0 127.0.0.1:323 0.0.0.0: 806/chronyd
udp 0 0 0.0.0.0:33131 0.0.0.0:
793/avahi-daemon: r udp 0 0 192.168.122.1:53 0.0.0.0: 2149/dnsmasq
udp 0 0 0.0.0.0:67 0.0.0.0:
2149/dnsmasq
udp 0 0 0.0.0.0:111 0.0.0.0: 1/systemd
udp6 0 0 :::5353 :::
793/avahi-daemon: r udp6 0 0 ::1:323 ::: 806/chronyd
udp6 0 0 :::38237 :::
793/avahi-daemon: r udp6 0 0 :::111 :::* 1/systemd

[root@centos-8 ~]# ping -c 4 1.1.1.1 PING 1.1.1.1 (1.1.1.1) 56(84) bytes of data. 64 bytes from 1.1.1.1: icmp_seq=1 ttl=57 time=42.4 ms 64 bytes from 1.1.1.1: icmp_seq=2 ttl=57 time=39.9 ms 64 bytes from 1.1.1.1: icmp_seq=3 ttl=57 time=42.2 ms 64 bytes from 1.1.1.1: icmp_seq=4 ttl=57 time=40.8 ms --- 1.1.1.1 ping statistics --- 4 packets transmitted, 4 received, 0% packet loss, time 3007ms rtt min/avg/max/mdev = 39.938/41.341/42.439/1.027 ms

[root@centos-8 ~]# dig example.com. ; <<>> DiG 9.11.36-RedHat-9.11.36-2.el8 <<>> example.com. ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 2342 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 512 ;; QUESTION SECTION: ;example.com. IN A ;; ANSWER SECTION: example.com. 39665 IN A 93.184.216.34 ;; Query time: 7 msec ;; SERVER: 192.168.0.1#53(192.168.0.1) ;; WHEN: Mon Feb 28 14:24:01 CST 2022 ;; MSG SIZE rcvd: 56 [root@centos-8 ~]#

Listar los privilegios que tiene el usuario normal#

[juan@centos-8 ~]$ getent passwd \${USER} juan: x:1000:1000:Juan Carlos Bautista Sandoval:/home/juan:/bin/bash

[juan@centos-8 ~]$ id uid=1000(juan) gid=1000(juan) groups=1000(juan),10(wheel),974(wireshark) context=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023

[juan@centos-8 ~]$ groups juan wheel wireshark

[juan@centos-8 ~]$ sudo -l Matching Defaults entries for juan on centos-8: !visiblepw, always_set_home, match_group_by_gid, always_query_group_plugin, env_reset, env_keep="COLORS DISPLAY HOSTNAME HISTSIZE KDEDIR LS_COLORS", env_keep+="MAIL PS1 PS2 QTDIR USERNAME LANG LC_ADDRESS LC_CTYPE", env_keep+="LC_COLLATE LC_IDENTIFICATION LC_MEASUREMENT LC_MESSAGES", env_keep+="LC_MONETARY LC_NAME LC_NUMERIC LC_PAPER LC_TELEPHONE", env_keep+="LC_TIME LC_ALL LANGUAGE LINGUAS _XKB_CHARSET XAUTHORITY", secure_path=/sbin\:/bin\:/usr/sbin\:/usr/bin User juan may run the following commands on centos-8: (ALL) NOPASSWD: ALL

[juan@centos-8 ~]$ sudo -i [root@centos-8 ~]#

Agregar un bloque de texto preformateado donde se liste la ubicación de las herramientas que se instalaron en CentOS#

[root@centos-8 ~]# which wireshark tcpdump nmap netcat-openbsd ngrep dsniff wget curl whois dnsutils net-tools iproute2 iptables iptables-persistent tsocks inetutils-ping inetutils-traceroute inetutils-tools ethtool /usr/bin/wireshark /usr/sbin/tcpdump /usr/bin/nmap /usr/bin/which: no netcat-openbsd in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/sbin/ngrep /usr/sbin/dsniff /usr/bin/wget /usr/bin/curl /usr/bin/whois /usr/bin/which: no dnsutils in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no net-tools in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no iproute2 in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/sbin/iptables /usr/bin/which: no iptables-persistent in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no tsocks in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no inetutils-ping in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no inetutils-traceroute in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/bin/which: no inetutils-tools in (/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/root/bin) /usr/sbin/ethtool

[root@centos-8 ~]# whereis wireshark tcpdump nmap netcat-openbsd ngrep dsniff wget curl whois dnsutils net-tools iproute2 iptables iptables-persistent tsocks inetutils-ping inetutils-traceroute inetutils-tools ethtool wireshark: /usr/bin/wireshark /usr/lib64/wireshark /usr/share/wireshark /usr/share/man/man1/wireshark.1.gz tcpdump: /usr/sbin/tcpdump /usr/share/man/man8/tcpdump.8.gz nmap: /usr/bin/nmap /usr/share/nmap /usr/share/man/man1/nmap.1.gz netcat-openbsd: ngrep: /usr/sbin/ngrep /usr/share/man/man8/ngrep.8.gz dsniff: /usr/sbin/dsniff /etc/dsniff /usr/share/man/man8/dsniff.8.gz wget: /usr/bin/wget /usr/share/man/man1/wget.1.gz /usr/share/info/wget.info.gz curl: /usr/bin/curl /usr/share/man/man1/curl.1.gz whois: /usr/bin/whois.md /usr/bin/whois /etc/whois.conf /usr/share/man/man1/whois.1.gz dnsutils: net-tools: iproute2: /etc/iproute2 iptables: /usr/sbin/iptables /usr/libexec/iptables /usr/share/man/man8/iptables.8.gz iptables-persistent: tsocks: inetutils-ping: inetutils-traceroute: inetutils-tools: ethtool: /usr/sbin/ethtool /usr/share/man/man8/ethtool.8.gz