This is the scenario; I use hping to perform my host enumeration. I use select tcp and udp ports. This way I will potentially find hosts behind firewalls. I then use nmap for service identification. I then feed the nmap results into nessus using the nmap nasl wrapper. In the nessus config I disabled all other port scanning options other than the nmap nasl wrapper. I get back proper nessus results for hosts that are not behind a firewall. For hosts that are behind a firewall I get back nothing from nessus. The report says that the host is not even up???? If nmap comes back with port 80 and 22 open on a host that is behind a firewall, why would nessus come back with a blank report that says the host is not alive? Why isn’t it running the port 80 and 22 pluggins against that host?

 

Daniel Pinsky, CISSP, CCSE

 

 

_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to