I too am very interested in knowing more about how this new SSH based
functionality works -- it looks really important for my work. The web page
we're pointed to only talks about checking for patches and doesn't really
give a rough sense of how that's done.

Would it be possible (say) to write a check that determines that
/var/log/authlog is not properly protected? Does that involve nothing more
than running an "ls -l" command on the remote machine and analyzing the
output within a nasl script?

I am curious too.

----- Original Message ----- 
From: "Jay Jacobson" <[EMAIL PROTECTED]>
To: "Sascha Schnitzler" <[EMAIL PROTECTED]>

> On Thu, 8 Jul 2004, Sascha Schnitzler wrote:
>
> > I'm wondering how Plugins that check for a local vunlarability (e.g.
the
> > availability of a special patch, program etc) work remotely.
>
> It is a new feature in Nessus 2.1.0 (experimental). You can find more
> information at:
>
>     http://www.nessus.org/doc/nessus_ssh_local.html

_______________________________________________
Nessus mailing list
[EMAIL PROTECTED]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to