Very true.  Though the question may relate to a heavily VLAN'd network,
something that is done for many reasons of desired segmentation.  If heavily
VLAN'd, there will be many areas in the network likely not accessible from
specific points unless proper routes or trunks are available.

If you have such a network, usually there is some starting point from the core
where all VLANs are trunked so that complete access is possible though likely
controlled by a screening router or firewall, like a NOC or a datacenter.
That would be the best place to start looking for complete visibility into a
heavily VLAN'd net.  Also, your network staff would likely be helpful as well.
:)

Regards,

--Dan

Daniel Bowman - Director of Support
Tenable Network Security
mailto:dan~at~tenablesecurity.com
http://www.tenablesecurity.com/

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Behalf Of Hugo van der Kooij
Sent: Thursday, February 19, 2004 4:14 PM
To: [EMAIL PROTECTED]
Subject: Re: Scanning on top of VLAN


On Thu, 19 Feb 2004, Biswas, Proneet wrote:

>                         I was wondering can nessus be made to run on a
> linux system with VLAN interfaces.

I can't see any reason why it shouldn't.

I have done tests over PPP, PPTP and PPPoE as well as Ethernet and
Token-Ring. An interface is an interface is aninterface as long at it has
an IP number.

Hugo.

--
 All email sent to me is bound to the rules described on my homepage.
    [EMAIL PROTECTED]           http://hvdkooij.xs4all.nl/
            Don't meddle in the affairs of sysadmins,
            for they are subtle and quick to anger.
_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to