FYI.
Renaud's last recommendation of disabling all the ping methods worked and
allowed me to scan thru the Cisco VPN.
Not sure about the accuracy question. Didn't see anything obvious.


On 1/22/08 12:45 PM, "darko g" <[EMAIL PROTECTED]> wrote:

> Does disabling ping/icmp speed up scanning at the cost or accuracy?
> 
> 
> On 1/22/08, Renaud Deraison (lists) <[EMAIL PROTECTED]> wrote:
>> 
>> On Jan 22, 2008, at 3:37 PM, Jason Luke wrote:
>> 
>>> Well good. It's not me then. :)
>>> 
>>> As a follow up, how is it that nessus can't "ping" it when I can. I
>>> can do an ICMP ping so I would assume then that that is not how
>>> nessus is doing it. In which case, can I change how nessus pings it?
>> 
>> Basically, packet forgery does not work on this device -- Nessus can't
>> "hear" back what the remote host is sending.
>> 
>> A solution to this problem is to disable all the ping methods in your
>> scan policy -> Advanced -> Ping the remote host and disable TCP ping,
>> ARP ping and ICMP ping.
>> 
>> 
>> 
>> -- Renaud
>> 
>> 
>> 
> 

_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to