Re: Sending plugin messages to the client...

"Alex Zimin" <[email protected]>
Newsgroups gmane.comp.security.nessus.devel
Message-ID <[email protected]>
I think it's too yearly to call it dead. I think it's just taking some
time to do the development.

It was a good discussion about db backend few weeks ago, and db schema
proposal, presented by Javier was looking good.
Having a status web page for the db development would be great, but I
think we should have a little more patience and maybe have better
cooperation in the db development, rather then create our own workarounds.

Alex.

> Since the initial proposal to create a server-side database backend,
> made a couple of weeks ago has seemed to have died, I've decided
> to integrate it into the nessusd code myself.
>
> The problem is that I can't seem to find where the vulnerability
> messages generated by the plugins and scanners are sent to the
> client...
>
> As far as I can tell, they may be spawned from the check_threads_input
> method in nessusd/utils.c.  Can anyone confirm this?
> Does this input come from the knowledge base?
>
> What I am looking for is a place in the code where I can find the
> plugins that found a security note/hole/warning.
>
> Also, I need to do a similar thing with the open ports.
> If anyone knows where I can get the open ports and their
> associated vulnerabilites on the server-side, your assistance
> is appreciated.
>
> Thanks.
>
> ----------------------
> William Heinbockel
> Information Security Incident Response Assistant
> Co-op Risk & Safety Management
> Rochester Institute of Technology
> E-mail: [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.