Skip to content

About project

SNER is a proactive network monitoring service operated by CESNET for network security and research purposes within the CESNET2 network.

The service continuously maps enrolled networks, performs service discovery, and conducts fingerprinting similar to Shodan, Censys, and Shadowserver services. Participating networks can enhance their visibility within their address space and potentially receive early warnings about possible vulnerabilities.

  • GitHub project: https://github.com/bodik/sner4
  • Scanning Sources: Dynamic and identifiable via DNS as snerXX.flab.cesnet.cz.
  • Scanning Techniques:
    • IP enumeration
    • DNS enumeration
    • TCP SYN scan
    • UDP service discovery
    • Service version fingerprinting
    • JA3/JARM scanning
    • TLS scanning
    • Vulnerability scanning (Nuclei)
  • Data Mining Techniques:
    • Service version extraction
    • CPE-CVE correlation

Contact

flab@cesnet.cz

sner logo cesnet logo

Acknowledgement

Computational resources were supplied by the project "e-Infrastruktura CZ" (e-INFRA CZ LM2018140 ) supported by the Ministry of Education, Youth and Sports of the Czech Republic.

The Pallets organization develops and supports Flask, Jinja, Werkzeug, Click, and other Python libraries.