FYI. Renaud's last recommendation of disabling all the ping methods worked and allowed me to scan thru the Cisco VPN. Not sure about the accuracy question. Didn't see anything obvious.
On 1/22/08 12:45 PM, "darko g" <[EMAIL PROTECTED]> wrote: > Does disabling ping/icmp speed up scanning at the cost or accuracy? > > > On 1/22/08, Renaud Deraison (lists) <[EMAIL PROTECTED]> wrote: >> >> On Jan 22, 2008, at 3:37 PM, Jason Luke wrote: >> >>> Well good. It's not me then. :) >>> >>> As a follow up, how is it that nessus can't "ping" it when I can. I >>> can do an ICMP ping so I would assume then that that is not how >>> nessus is doing it. In which case, can I change how nessus pings it? >> >> Basically, packet forgery does not work on this device -- Nessus can't >> "hear" back what the remote host is sending. >> >> A solution to this problem is to disable all the ping methods in your >> scan policy -> Advanced -> Ping the remote host and disable TCP ping, >> ARP ping and ICMP ping. >> >> >> >> -- Renaud >> >> >> > _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus
