Re: [sentinix-list] Default installation of Sentinix scanned in sample report

Michel Blomgren <[email protected]> Tue, 18 May 2004 09:11:41 +0200
Newsgroups gmane.linux.sentinix
Message-ID <[email protected]>
On Tuesday 18 May 2004 04:10, Chris Hammond wrote:
> Michel, is that a standard Nessus report or are you doing something else
> with the data from Nessus?

Sorry, forgot to mention it's a Nessus scan!  :p
The only change I did was to move the snmp public community recognized on 
Sentinix by Nessus from "HIGH" to "MEDIUM", as it's not a security hole to 
have a read-only snmp community open.

	Michel

>
> Chris
>
> On Mon, 2004-05-17 at 14:49, Michel Blomgren wrote:
> > Hi!
> >
> > I put up a Sentinix box in our lab network of hosts to scan to provide
> > enough raw data for a sample report demonstrating one of our services
> > (Continuous Vulnerability Assessment - http://cycom.se/en/services/cva ).
> >
> > The lab network had 4 hosts: one win98, one default win2k installation,
> > one NetBSD, and one default Sentinix 0.70.5 installation.
> >
> > To view the (quite recent) results of Sentinix 0.70.5, see this pdf file:
> > http://www.cycom.se/uploads/images/83/www_cycom_se-cva_sample_report.pdf
> > Or visit http://cycom.se/en/services/cva directly.
> >
> > The results were quite OK, except that there's no firewall enabled by
> > default that locks down Sentinix.
> >
> > Best regards,
>
> _______________________________________________
> SENTINIX mailing list
> [email protected]
> http://elevenprospect.com/mailman/listinfo/sentinix

-- 
Michel Blomgren
Cycom AB
http://www.cycom.se
______________________________________________
PGP: http://www.cycom.se/misc/pubkeymichel.asc
886A 7B17 1747 6C82 7A7E
EAC0 A3F1 2943 101C 18FA