I'm having trouble with Nessus doing a safe, non-DoS scan of HP-UX systems
and it causes the snmpdm daemon to go to 100% CPU until it is killed and
restarted.

After running through the scan one test at a time, it appears to be
radmin_detect.nasl that is causing the problem based on the fact that I have
disabled all plugins (except Ping and TCP Connect scan), enabled safe mode,
dependencies and optimization (.nessurc generated by NessusWX attached) and
stopped the scan as soon as snmpdm goes to 100%.

I'm not sure what radmind has to do with snmp.  I tried to run radmin_detect
manually with a trace option, but since port 4899 is not open on the test
system, it exits quickly without causing the problem.  rpcinfo -p doesn't
show any sort of admin process and I tried setting the port 4899 to each of
the tcp ports reported by rpcinfo just to test from the command line, but
none of them affect snmpdm adversely (or the script quits quickly).

The test system is "HP-UX B.11.00 U 9000/800"

Is there a way I can enable more debugging to see what radmin_detect.nasl is
doing?

Thanks,
Owen Crow
Systems Programmer (Unix)
BMC Software, Inc.


 <<nessusrc>> 

Attachment: nessusrc
Description: Binary data

Reply via email to