Suppose scanning a subnet, considering unscanned ports as closed and feeding nessus with nmap results where some IPs have all ports closed.
Wouldn't expected behaviour be that nessus does NOT try to scan those hosts at all...? Actually, in my (made up) nmap results some IPs are just missing. Is that why those IPs get scanned anyway? In other words: is there a way I can be sure that only designated ports on designated IPs get scanned? I guess indicating the very IPs as target rather than the whole subnet would be an option, too bad I can't handle it at the moment... -- andrew
