Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | nessusd in sussen-core-2.2.11 does not set source address correctly. |
|---|---|
| Date: | Sun, 20 Apr 2008 18:02:32 +0400 |
Hello! Whenever I scan remote hosts I receive an error: "nessusd returned an empty report." I've used tcpdump and found that nessusd attempts to scan remote hosts using 127.0.0.1 as source address. 17:58:28.852033 IP 127.0.0.1.6754 > 192.168.1.1.139: S 3374651501:3374651501(0) win 8 17:58:28.959237 IP 127.0.0.1.64933 > 192.168.1.1.135: S 96975461:96975461(0) win 8 17:58:29.062343 IP 127.0.0.1.55407 > 192.168.1.1.445: S 3588223318:3588223318(0) win 8 17:58:29.165573 IP 127.0.0.1.12025 > 192.168.1.1.80: S 3238285111:3238285111(0) win 8 17:58:29.372319 IP 127.0.0.1.1023 > 192.168.1.1.515: S 1951520257:1951520257(0) win 8 If I ran `nessusd -D -S 192.168.1.3` then it scans the hosts successfully. Can anybody reproduce this? What could cause this behavior? Below is my /etc/nessus/nessusd.conf: plugins_folder = /usr/lib/nessus/plugins max_hosts = 30 max_checks = 10 be_nice = no logfile = /var/lib/nessus/logs/nessusd.messages log_whole_attack = no log_plugins_name_at_load = no dumpfile = /var/lib/nessus/logs/nessusd.dump rules = /etc/nessus/nessusd.rules users = /etc/nessus/nessusd.users cgi_path = /cgi-bin:/scripts port_range = default optimize_test = yes language = english checks_read_timeout = 5 non_simult_ports = 139, 445 plugins_timeout = 320 safe_checks = yes auto_enable_dependencies = yes silent_dependencies = yes use_mac_addr = no save_knowledge_base = no kb_restore = no only_test_hosts_whose_kb_we_dont_have = no only_test_hosts_whose_kb_we_have = no kb_dont_replay_scanners = no kb_dont_replay_info_gathering = no kb_dont_replay_attacks = no kb_dont_replay_denials = no kb_max_age = 864000 plugin_upload = no plugin_upload_suffixes = .nasl, .inc admin_user = root slice_network_addresses = no nasl_no_signature_check = no cert_file=/usr/com/nessus/CA/servercert.pem key_file=/var/lib/nessus/CA/serverkey.pem ca_file=/usr/com/nessus/CA/cacert.pem -- Peter.
signature.asc
Description: =?UTF-8?Q?=D0=AD=D1=82=D0=B0?= =?UTF-8?Q?_=D1=87=D0=B0=D1=81=D1=82=D1=8C?= =?UTF-8?Q?_=D1=81=D0=BE=D0=BE=D0=B1=D1=89=D0=B5=D0=BD=D0=B8=D1=8F?= =?UTF-8?Q?_=D0=BF=D0=BE=D0=B4=D0=BF=D0=B8=D1=81=D0=B0=D0=BD=D0=B0?= =?UTF-8?Q?_=D1=86=D0=B8=D1=84=D1=80=D0=BE=D0=B2=D0=BE=D0=B9?= =?UTF-8?Q?_=D0=BF=D0=BE=D0=B4=D0=BF=D0=B8=D1=81=D1=8C=D1=8E?=
_______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: Nessus Digest, Vol 54, Issue 17, Kevin Chak |
|---|---|
| Next by Date: | Re: Nessus Host Scan range, Ron Gula |
| Previous by Thread: | RE: Nessus Digest, Vol 54, Issue 17, Kevin Chak |
| Next by Thread: | Re: nessusd in sussen-core-2.2.11 does not set source address correctly., Renaud Deraison (lists) |
| Indexes: | [Date] [Thread] [Top] [All Lists] |