Skip to content

About project

SNER is a proactive network monitoring service operated by CESNET for network security and research purposes within the CESNET2 network.

The service continuously maps enrolled networks, performs service discovery, and conducts fingerprinting similar to Shodan, Censys, and Shadowserver services. Participating networks can enhance their visibility within their address space and potentially receive early warnings about possible vulnerabilities.

  • GitHub project: https://github.com/snerstack
  • Scanning techniques:
    • IPv4 address scanning
    • IPv6 DNS and adress pattern enumeration
    • Nmap-based scannig and service version fingerprinting
    • JA3/JARM scanning
    • TLS scanning (nmap script. testssl)
    • Vulnerability scanning (nuclei)
    • Source port scanning
  • Data Management:
    • Service version extraction
    • CPE-CVE correlation
    • Long-term IP-centric storage
    • Visualization and analytics user-interface
    • REST-like API for data access

Scanning sources

Note that the following list is subject to change at any time (machine-readable version).

Hostname IPv4 Address IPv6 Address
sner.flab.cesnet.cz 78.128.214.225 2001:718:1808:f000::225
sner2.flab.cesnet.cz 78.128.214.226 2001:718:1808:f000::226
sner3.flab.cesnet.cz 78.128.214.227 2001:718:1808:f000::227
sner4.flab.cesnet.cz 78.128.214.228 2001:718:1808:f000::228
sner5.flab.cesnet.cz 78.128.214.229 2001:718:1808:f000::229
sner6.flab.cesnet.cz 78.128.214.231 2001:718:1808:f000::231
sner7.flab.cesnet.cz 78.128.214.232 2001:718:1808:f000::232
sner8.flab.cesnet.cz 78.128.214.233 2001:718:1808:f000::233

Contact

flab@cesnet.cz

Acknowledgement

Computational resources were supplied by the project "e-Infrastruktura CZ" (e-INFRA CZ LM2018140 ) supported by the Ministry of Education, Youth and Sports of the Czech Republic.

The Pallets organization develops and supports Flask, Jinja, Werkzeug, Click, and other Python libraries.