Does anyone else have a lot of false positives out of the "bonk" test?  Every time I 
run nessus (1.2.7 and earlier) against my Solaris 8 systems I get a report that 
bonk.nasl was able to crash the box...but it isn't true.  The box is still there, 
still running all its services (afaik), still serving up web pages, etc.  It looks 
like someone increased the "sleep" call from 5 to 7 in the script with a note about 
false positives, but perhaps this is still too low?  I will be testing that Solaris 
box again in a couple of days and will try to reset the sleep call to a bigger number 
(10 or more) and see if that clears it up.

- Tim Aldrich
-
[EMAIL PROTECTED]: general discussions about Nessus.
* To unsubscribe, send a mail to [EMAIL PROTECTED] with
"unsubscribe nessus" in the body.

Reply via email to