I've been working on trying to correlate our patch management with
Nessus scans that we run against workstations.  We are seeing that
Nessus still reports that workstation needs patching, while patch
management gives us an all is good. 
 
 One example is, see link:
http://cvsweb.nessus.org/cgi-bin/cvsweb.cgi/~checkout~/nessus-plugins/sc
ripts/smb_nt_ms03-024.nasl?content-type=text/plain

Code is looking for Q817606, but patch modifies registry with KB817606.

Most of the false positives we are seeing are based on registry entries.
Are others having the same issue as we are? It is very time consuming to
double check every alert against each device checked. How are others
dealing with this issue?
_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to