Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

Re: nmap with nessus against Avaya P130

Subject: Re: nmap with nessus against Avaya P130
Date: Sun, 24 Apr 2005 00:51:16 +0200 (CEST)
The latest versions of the nmap.nasl
wrapper disable those dangerous options (OS fingerprinting, TCP
stealth scans, UDP scan, aggressive timings).
Do you mean that the plugin nmap.nasl has been updated?

You should try scanning your gizmo with Nmap only.
 In fact, I've already done this, as i said in my first mail:
"First, i used Nmap only against the P130: no problem: 3 open ports (23,80 and 
4000) are detected as when i used nmap 3.75 alone". There was no reboot with 
nmap only. When i used Nessus running with nmap only (connect technique), the 
P130 never rebooted, but sometimes, the report did not display that the port 
4000 was opened. Would the plugin nmap be buggy?
The thing that i don't understand is why, when i run nessus with nmap, safe 
check or not, and Cajun P13x Dos enabled, nessus reports no security hole on 
port 4000 whereas the switch P130 reboots. In fact I see lots of packets 
arriving on the switch (meaning that nessus is doing the Dos) during 15-20 
seconds, then the switch crashes, 5 seconds later, nessus displays its report: 
no security hole! One time, it has even displayed "empty report". Don't you 
think it is strange?

Thanks
------------------------------------------

Faites un voeu et puis Voila ! www.voila.fr 

_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>