On Tue, May 25, 2004 at 02:18:35PM +0100, Chuck Amadi wrote:

> The contents were as follows: No rules file I did create using the User Tab
...
> contents of the file /usr/local/var/nessus/users/chucka/ <no rule> file
>  
> auth  plugins

The rules file should be located under the auth directory; one should
have been created by nessus-adduser, although it might be empty. 
Further, nessusd will create one if it does not exist when the user logs
in.  So, does the file really not exist? If it does, what does it
contain?

Also, rules you specify in the client can only be used to further
restrict rules from the rules file.  You might use this feature to
specify a broader target range but restrict scans from hitting
particularly sensitive targets.  If you try to gain more rights via the
client, nessusd will write a warning to its log about that; eg, "user
chucka : attempted to gain more rights by adding accept 192.168.2.1/32". 

By the way, I'm confused by your use of terms like "localhost" and
"hostnames" in your descriptions; that is, I'm not clear whether you're
specifying those exactly or using them to obscure the names / addresses
you are using.  It would be helpful therefore if you would restate the
error you're encountering with this in mind. 

George
-- 
[EMAIL PROTECTED]

Attachment: pgpom7c1gODeR.pgp
Description: PGP signature

_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to