Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: NessusClient 3.2 |
|---|---|
| Date: | Wed, 18 Jun 2008 17:24:41 +0200 |
Hi Scott,
On Jun 18, 2008, at 5:07 PM, Scott Pate wrote:
Thanks Renaud,
I understand documentation is difficult, but I have to say it's frustrating when certains features are added or removed with little or no documentation. For instance, the KB. It has been my practice to use the KB and it's functionality when re-running a scan, such as "don't scan hosts already scanned", or "don't re-run port scanners"....I also know that when you use the nasl command to run individual plugins, some of them depend on information from the KB and they will not run if you have not saved the KB. So when these options no longer exist in the new client, it leaves me to wonder how this change affects the funtionality of the scanner, and how that will impact my scans.
Also, with regard to "optimize tests", when this functionality is removed, how does that affect the scan as well? Do I know that the functionality of un-checking this box still extists? Where is this documented?
I also noticed the addition of the "Probe services on every port" option which to me sounds familiar to what "optimze tests" used to do.
The description for this option is that nessus will attempt to "match each open port with the service that is running on that port". So does this mean every port that was scanned, or every port that is open? and If I don't have this checked, does this mean nessus will not try to identify services on all ports? What services will it try to identify? What exactly does "All" ports mean? All 65535 ports or just ports that are specified in the port scanner, or just ports that are open?
I have learned through experience that documentation on nessus, while helpful, does not address all, nor some of the more advanced features of nessus. There are obviously many many options that can be set, and I have taught myself through many hours of trial and error what exactly each option does and how it affects the scan. Particularly when you are dealing with multiple options that seem related. For instance, I learned (alteast with the older nessus client) that if you disable "ping host" in the general tab, but still leave "tcp ping" enabled in global options, that nessus will still try to ping the host.
Thanks,
-- Renaud
_______________________________________________ Nessus mailing list Nessus@list.nessus.org http://mail.nessus.org/mailman/listinfo/nessus
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: NessusClient 3.2, Scott Pate |
|---|---|
| Next by Date: | Re: force nessusd to reload plugins in windows, George A. Theall |
| Previous by Thread: | RE: NessusClient 3.2, Scott Pate |
| Next by Thread: | Nessus version 3.0.6 command line configuration file ??, Richard Puerto |
| Indexes: | [Date] [Thread] [Top] [All Lists] |