Re: incomplete audit and update-nessusrc failure

"George A. Theall" <[email protected]>
Newsgroups gmane.comp.security.nessus.general
Message-ID <[email protected]>
On May 29, 2008, at 12:08 AM, KAYVEN RIESE wrote:

> *** The plugins that have the ability to crash remote services or  
> hosts
> have been disabled. You should activate them if you want your security
> audit to be complete

If you're indeed willing to enable plugins that intentionally try to  
be destructive (for example, crashing a service or causing a kernel  
panic), then disable safe checks, either by setting 'safe_checks' to  
"no" in the client config or unchecking "Safe checks" in the client.

> I guess this is an old page:
>
> http://www.tifaware.com/perl/update-nessusrc/

Why do you say "old"? I just updated it the other day after some  
feedback from Larry Petty.

> [19:11 kayve@kv_bsd~/stan]./update-nessusrc.pl -c
> "attack,infos,mixed,scanner,se
> ttings,denial,destructive_attack,kill_host" ~/.nessusrc
> *** You must set $nessusd_host! ***
>  at ./update-nessusrc.pl line 335
>
>
> but as you can see, this particular script that I downloaded is
> not working.

As the error says, you need to set the variable 'nessusd_host' (and  
several others) in the script.  This is also noted in the installation  
instructions on the web page.


George
-- 
[email protected]



_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.