Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Bug? Nessus can't parse it's own generated .nbe file?? |
|---|---|
| Date: | Thu, 28 Apr 2005 20:58:51 +0200 |
On Thu Apr 28 2005 at 19:33, Jason Haar wrote:
I've been having real difficulty getting nessus to scan a DMZ in which some HTTPS web servers aren't pingable - Nessus has been skipping them (host is dead).
Enable "TCP ping" option (it is by default) and make sure that 443 is in the port list (it is in "built-in" and "extended") Unless your server is not on port 443, of course.
In the end I had to turn off both tcp and icmp ping options
There must be an open TCP port somewhere, no? The "extended" port list is slow but good on firewalled hosts, unless they use only uncommon ports.
and configure it to use the nmap scanner option.
Do you use up to date plugins by the way? nmap.nasl now adds -P0. In older versions, it was possible to enable nmap ping. But if ping_host.nasl says that the host is dead, nmap ping will not do better.
After that it went off and found all the hosts successfully and produced an .nbe file. Then I ran "nessus -i file.nbe -T text -o -" - zero hosts found!
The .nbe file is 74K in size - I really don't think that's zero hosts! There are "host_start" and "host_end" records for each of the hosts, and plenty of Security Note/Warning/<ahem>/etc - it all looks fine to me - but "Number of hosts which were alive during the test : 0"
Might be a bug in the text conversion. Did you try another format? HTML? Did you read the NBE with the GUI? _______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Bug? Nessus can't parse it's own generated .nbe file??, Jason Haar |
|---|---|
| Next by Date: | Re: Bug? Nessus can't parse it's own generated .nbe file??, Jason Haar |
| Previous by Thread: | Re: Bug? Nessus can't parse it's own generated .nbe file??, Jason Haar |
| Next by Thread: | Re: Bug? Nessus can't parse it's own generated .nbe file??, Jason Haar |
| Indexes: | [Date] [Thread] [Top] [All Lists] |