Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Nessus-Users
[Top] [All Lists]

nessusd in sussen-core-2.2.11 does not set source address correctly.

Subject: nessusd in sussen-core-2.2.11 does not set source address correctly.
Date: Sun, 20 Apr 2008 18:02:32 +0400
Hello! Whenever I scan remote hosts I receive an error:

"nessusd returned an empty report."

I've used tcpdump and found that nessusd attempts to scan remote hosts
using 127.0.0.1 as source address.

17:58:28.852033 IP 127.0.0.1.6754 > 192.168.1.1.139: S 3374651501:3374651501(0) 
win 8
17:58:28.959237 IP 127.0.0.1.64933 > 192.168.1.1.135: S 96975461:96975461(0) 
win 8
17:58:29.062343 IP 127.0.0.1.55407 > 192.168.1.1.445: S 
3588223318:3588223318(0) win 8
17:58:29.165573 IP 127.0.0.1.12025 > 192.168.1.1.80: S 3238285111:3238285111(0) 
win 8
17:58:29.372319 IP 127.0.0.1.1023 > 192.168.1.1.515: S 1951520257:1951520257(0) 
win 8

If I ran `nessusd -D -S 192.168.1.3` then it scans the hosts
successfully. Can anybody reproduce this? What could cause this
behavior?


Below is my /etc/nessus/nessusd.conf:

plugins_folder = /usr/lib/nessus/plugins
max_hosts = 30
max_checks = 10
be_nice = no
logfile = /var/lib/nessus/logs/nessusd.messages
log_whole_attack = no
log_plugins_name_at_load = no
dumpfile = /var/lib/nessus/logs/nessusd.dump
rules = /etc/nessus/nessusd.rules
users = /etc/nessus/nessusd.users
cgi_path = /cgi-bin:/scripts
port_range = default
optimize_test = yes
language = english
checks_read_timeout = 5
non_simult_ports = 139, 445
plugins_timeout = 320
safe_checks = yes
auto_enable_dependencies = yes
silent_dependencies = yes
use_mac_addr = no
save_knowledge_base = no
kb_restore = no
only_test_hosts_whose_kb_we_dont_have = no
only_test_hosts_whose_kb_we_have = no
kb_dont_replay_scanners = no
kb_dont_replay_info_gathering = no
kb_dont_replay_attacks = no
kb_dont_replay_denials = no
kb_max_age = 864000
plugin_upload = no
plugin_upload_suffixes = .nasl, .inc
admin_user = root
slice_network_addresses = no
nasl_no_signature_check = no
cert_file=/usr/com/nessus/CA/servercert.pem
key_file=/var/lib/nessus/CA/serverkey.pem
ca_file=/usr/com/nessus/CA/cacert.pem

-- 
Peter.

Attachment: signature.asc
Description: =?UTF-8?Q?=D0=AD=D1=82=D0=B0?= =?UTF-8?Q?_=D1=87=D0=B0=D1=81=D1=82=D1=8C?= =?UTF-8?Q?_=D1=81=D0=BE=D0=BE=D0=B1=D1=89=D0=B5=D0=BD=D0=B8=D1=8F?= =?UTF-8?Q?_=D0=BF=D0=BE=D0=B4=D0=BF=D0=B8=D1=81=D0=B0=D0=BD=D0=B0?= =?UTF-8?Q?_=D1=86=D0=B8=D1=84=D1=80=D0=BE=D0=B2=D0=BE=D0=B9?= =?UTF-8?Q?_=D0=BF=D0=BE=D0=B4=D0=BF=D0=B8=D1=81=D1=8C=D1=8E?=

_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
<Prev in Thread] Current Thread [Next in Thread>