RE: scanning ports for known vulnerabilities
"Ian Douglas" <[email protected]>
| Newsgroups | gmane.linux.redhat.release.guinness |
|---|---|
| Message-ID | <[email protected]> |
> I thought those were preventative measures, not > probing tools. Don't know about HackerShield, but yes tripwire is a preventative measure as well as a great reporting tool to see after the fact if key system files have changed. Warning though: this can get tedious to use if you install a lot of Perl libraries or upgrade RPM files... My understanding is that 'nmap' is more of a probing tool, but doesn't report how to fix any vulnerabilities. I could be wrong though. I don't know of any other tools that do both probing AND reporting on what to fix. -id