Nessus
[Top] [All Lists]

Re: how to run attacks using nessus

To: Girish <girishramgopal@gmail.com>
Subject: Re: how to run attacks using nessus
From: Ron Gula <rgula@tenablesecurity.com>
Date: Wed, 09 May 2007 07:51:26 -0400
Cc: nessus@list.nessus.org
Delivered-to: sp-com-lists@consult.net
Delivered-to: nessus-list1@securepoint.com
Delivered-to: nessus@list.nessus.org
In-reply-to: <886334340705082140v1374632dg2abcc37cbce5390e@mail.gmail.com>
List-archive: <http://mail.nessus.org/pipermail/nessus>
List-help: <mailto:nessus-request@list.nessus.org?subject=help>
List-id: Discussion of Nessus software <nessus.list.nessus.org>
List-post: <mailto:nessus@list.nessus.org>
List-subscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=subscribe>
List-unsubscribe: <http://mail.nessus.org/mailman/listinfo/nessus>, <mailto:nessus-request@list.nessus.org?subject=unsubscribe>
References: <886334340705082140v1374632dg2abcc37cbce5390e@mail.gmail.com>
Sender: nessus-bounces@list.nessus.org
User-agent: Thunderbird 2.0.0.0 (Windows/20070326)
Girish wrote:
> Hello All,
> 
> I am new to Nessus. My requirement is to run TCP , UDP, ICMP related
> attacks from WAN to the the gateway. This is for validating the
> Firewall capabilities of my gateway.
> 
> Regards,
> Girish

Hi Girish,

If you scan your gateway with Nessus, then you are testing the open
ports and services of your gateway/firewall/IPS, not how well it is
blocking attacks and probes.

You should target a system behind your firewall or gateway and compare
this to results of an internal scan of the same system.

Please see this blog entry which also covers NAT issues for more
information:

http://blog.tenablesecurity.com/2006/08/using_nessus_to.html

Ron Gula, CTO
Tenable Network Security


_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus

<Prev in Thread] Current Thread [Next in Thread>