Hi, 

I got some strange behavior while trying to create a custom Scan Configuration 
from GSA web interface I don't know if it is wrong or this is a normal behavior
(In OpenVAS-6 I didn't had this problem)

1. Cloned the "Full and very deep" Scan Configuration.

2. Changed the name of the new configuration to "Default" and tried to save it, 
the result was :

Operation:      Save Config
Status message: Given comment was invalid
At least one entered value contains invalid characters or exceeds a size limit. 
You may use the Back button of your browser to adjust the entered values. If in 
doubt, the online help of the respective section will lead you to the 
appropriate help page.

This message was persisting until I changed the "Most NVT's including those 
that can stop services/hosts; don't trust previously collected information; 
slow." value (which is the default one) to something simple like Default.
Then I observed that if any of these two fields "Name" or "Comment" value 
contains "space" the error will persist. (ex. "Default Configuration" will 
fail, and "DefaultConfiguration" will work)

3.When the new configuration name was updated and saved I saw that a lot of 
NVT's are removed from the configuration, like 6656 NVT's remained from the 
35223 NVT's that the "Full and very deep" configuration had, from which I 
cloned the settings.

4. At the "Edit Network Vulnerability Test Families" checked the "Select all 
NVTs" for the "Buffer overflow" family and pressed the Save Config button, when 
the page reloaded the checkbox for  the "Buffer overflow" family was unchecked, 
no NVT's were added for that family. 

4a. From the Action, edit the scan config family for "Buffer overflow", select 
a few vulnerabilities from there and then save the config. In this case the 
selected vulnerabilities will appear in the configuration.

The idea is that selecting all the NVT's manually it will be a pain, at least 
for me.
If I can help with anything else please feel free to contact me.

Regards,

Configuration:
Ubuntu 12.04.4 LTS
OpenVAS-7 build from source
Components:
- Libraries 7.0.2
- Scanner 4.0.1
- Manager 5.0.2
- Greenbone Security Assistant (GSA) 5.0.1
- Commandline Interface (CLI) 1.3.0
_______________________________________________
Openvas-discuss mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

Reply via email to