I think certificates were the problem. Yes, I had ones from Openvas 7 (Sep
30 in the listing below). I regenerated new ones with Openvas 8 (Oct 21).
The byte sizes are much bigger - stronger keys I suppose.

$ sudo find /var/lib/openvas/ -name *pem -ls
129852    4 -rw-r--r--   1 root     root         2524 Oct 21 11:35
/var/lib/openvas/CA/cacert.pem
129854   12 -rw-r--r--   1 root     root         8382 Oct 21 11:35
/var/lib/openvas/CA/servercert.pem
201836    8 -rw-------   1 root     root         8029 Oct 21 11:36
/var/lib/openvas/CA/clientcert.pem
129448    4 -rw-r--r--   1 root     root         1476 Sep 30 09:44
/var/lib/openvas/CA.20161021/cacert.pem
129449    8 -rw-r--r--   1 root     root         4274 Sep 30 09:44
/var/lib/openvas/CA.20161021/servercert.pem
129450    4 -rw-------   1 root     root         3921 Sep 30 09:44
/var/lib/openvas/CA.20161021/clientcert.pem
201835    4 -rw-------   1 root     root         3243 Oct 21 11:36
/var/lib/openvas/private/CA/clientkey.pem
129851    4 -rw-------   1 root     root         3243 Oct 21 11:35
/var/lib/openvas/private/CA/cakey.pem
129853    4 -rw-------   1 root     root         3243 Oct 21 11:35
/var/lib/openvas/private/CA/serverkey.pem
129451    4 -rw-------   1 root     root          887 Sep 30 09:43
/var/lib/openvas/private/CA.20161021/clientkey.pem
129454    4 -rw-------   1 root     root          887 Sep 30 09:44
/var/lib/openvas/private/CA.20161021/cakey.pem
129455    4 -rw-------   1 root     root          887 Sep 30 09:44
/var/lib/openvas/private/CA.20161021/serverkey.pem

Some other thread suggested that, instead of these options to the command:
sudo openvas-mkcert-client -n om -i
I should use these:
sudo openvas-mkcert-client -i -n

A third thread had the "--scanner-port" in the --modify-scanner command.
sudo openvasmd --modify-scanner 08b69003-5fc2-4037-a479-93b440211c73
--scanner-port 9391 \
 --scanner-ca-pub /var/lib/openvas/CA/cacert.pem \
 --scanner-key-pub /var/lib/openvas/CA/servercert.pem \
 --scanner-key-priv /var/lib/openvas/private/CA/serverkey.pem

It is working now. Thank you.


On Nov 10, 2016 3:33 AM, "Jan-Oliver Wagner" <
[email protected]> wrote:
...
> it smells like a certificate problem. Perhaps some remains from
> an older installation?
>
> Doing the certificate creations manually is ... well ... challenging.
> There are scripts to assist (see the INSTALL guide).
>
> --
> Dr. Jan-Oliver Wagner |  +49-541-335084-0  |  http://www.greenbone.net/
> Greenbone Networks GmbH, Neuer Graben 17, 49074 Osnabrück | AG Osnabrück,
HR B
> 202460
> Geschäftsführer: Lukas Grunwald, Dr. Jan-Oliver Wagner
> _______________________________________________
> Openvas-discuss mailing list
> [email protected] <[email protected]>
> https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss
<https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss>
_______________________________________________
Openvas-discuss mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

Reply via email to