Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

Re: Bug? Nessus can't parse it's own generated .nbe file??

Subject: Re: Bug? Nessus can't parse it's own generated .nbe file??
Date: Thu, 28 Apr 2005 20:58:51 +0200
On Thu Apr 28 2005 at 19:33, Jason Haar wrote:

I've been having real difficulty getting nessus to scan a DMZ in which
some HTTPS web servers aren't pingable - Nessus has been skipping them
(host is dead).

Enable "TCP ping" option (it is by default) and make sure that 443 is
in the port list (it is in "built-in" and "extended")
Unless your server is not on port 443, of course.

In the end I had to turn off both tcp and icmp ping options

There must be an open TCP port somewhere, no? The "extended" port list
is slow but good on firewalled hosts, unless they use only uncommon
ports. 

and configure it to use the nmap scanner option.

Do you use up to date plugins by the way? nmap.nasl now adds -P0. In
older versions, it was possible to enable nmap ping.
But if ping_host.nasl says that the host is dead, nmap ping will not
do better.

After that it went off and found all the hosts successfully and
produced an .nbe file. Then I 
ran "nessus -i file.nbe -T text -o -" - zero hosts found!

The .nbe file is 74K in size - I really don't think that's zero hosts! 
There are "host_start" and "host_end" records for each of the hosts,
and plenty of Security Note/Warning/<ahem>/etc - it all looks fine to
me -
but "Number of hosts which were alive during the test : 0"

Might be a bug in the text conversion. Did you try another format?
HTML? Did you read the NBE with the GUI?

_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus

<Prev in Thread] Current Thread [Next in Thread>