On Wed, Jul 30, 2003 at 04:36:35PM -0700, Scott Ostrander wrote:

> The man page for nessus-adduser says
> 
> The syntax is:
>               accept|deny ip/mask
>        and
>               default accept|deny
> 
> But reject is what seems to work.

On one hand, there's a recent post by Renaud in which he tells someone
to use "reject" rather than "deny":

    http://msgs.securepoint.com/cgi-bin/get/nessus-0307/26/1/1.html

On the other, the source code in nessus-core/nessusd/rules.c suggests
either "reject" or "deny" will work.  [True for versions of Nessus going
back to 1999.] Further, some tests I did indicate this is the case,
although it seems important to log out and then in for changes in the
user's rules file to take effect. 

George
-- 
[EMAIL PROTECTED]

Attachment: pgp00000.pgp
Description: PGP signature

Reply via email to