Renaud Deraison wrote:

On Mon, Feb 14, 2005 at 08:31:37PM +1300, Jason Haar wrote:


So I disable all plugins other than those related to Windows, enable dependencies and tell Nessus to only scan specific ports - including 139,445 and 1433/34.



Which port scanner are you using ? Also some plugins have some ports
hard-coded in them which will override the port range you selected if
the option "unscanned_as_closed" is not set to "yes".


I meant to mention I *did* have unscanned_as_closed enabled.

Here's a few lines from .nessusrc

port_range = 22,21,25,135,137,138,139,445,1241,1433,1434,3306,10168,1192,20168
unscanned_closed = yes
server_info_nessusd_version = 2.2.3
Ping the remote host[entry]:TCP ping destination port(s) : = 22,21,25,135,137,138,139,445,1241,1433,1434,3306,10168,1192,20168
Nmap[radio]:TCP scanning technique : = connect()
Ping the remote host[checkbox]:Do a TCP ping = no
Ping the remote host[checkbox]:Do an ICMP ping = no
Ping the remote host[checkbox]:Make the dead hosts appear in the report = no
Nmap (NASL wrapper)[checkbox]:Ping the remote host = no
Global variable settings[checkbox]:Enable experimental scripts = no
Global variable settings[checkbox]:Thorough tests (slow) = no
Global variable settings[radio]:Report verbosity = Verbose
Global variable settings[radio]:Report paranoia = Avoid false alarms



-- Cheers

Jason Haar
Information Security Manager, Trimble Navigation Ltd.
Phone: +64 3 9635 377 Fax: +64 3 9635 417
PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1

_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to