Nessus exists to figure out what is running on any given IP address and then test the 
discovered functions for a vulnerability.  There's no plug-in because this searching 
is part of what it does naturally.

The only gotcha I've found, is that to find IIS machines that only respond on port 443 
(https), you must add port 443 to the TCP Ping test.  If all you want to do is locate 
IIS machines and not test any vulnerabilities, then I suppose you would put 80 and 443 
on the TCP Ping test and disable all other plug-ins.

Carl

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of George Stone
Sent: Monday, September 30, 2002 8:43 AM
To: [EMAIL PROTECTED]
Subject: How to Scan for IIS?


I was reviewing the plugins looking for a way to search for IIS, but I 
only found plugins that located IIS vulnerabilities.  Can Nessus scan a 
network and locate machines running IIS and not just IIS 
vulnerabilities?  Thanks.
--
George

-
[EMAIL PROTECTED]: general discussions about Nessus.
* To unsubscribe, send a mail to [EMAIL PROTECTED] with
"unsubscribe nessus" in the body.

Reply via email to