I do see the REDIS server on our openvas installation using most part
of a single core, about 80% average (while running two scans in
parallel).
Is that normal?
I captured "redis-cli MONITOR" output for a minute:
# timeout 60s redis-cli MONITOR > file
# awk '{print $(NF-1) $NF}' file | sort | uniq -c | sort -n
4208 "SRANDMEMBER" "Transports/TCP/5985"
4210 "SRANDMEMBER" "Ports/tcp/5985"
4577 "SMEMBERS" "Settings/disable_cgi_scanning"
4671 "KEYS" "Services/PJL"
4792 "SRANDMEMBER" "oid:1.3.6.1.4.1.25623.1.0.103844:category"
5334 "SRANDMEMBER" "Host/scanned"
5524 "SRANDMEMBER" "oid:1.3.6.1.4.1.25623.1.0.11913:category"
5859 "SELECT" "9"
5919 "SRANDMEMBER" "oid:1.3.6.1.4.1.25623.1.0.100076:category"
6358 "SRANDMEMBER" "NIDS/TCP/fake_rst"
6358 "SRANDMEMBER" "NIDS/TCP/inject"
6358 "SRANDMEMBER" "NIDS/TCP/short_ttl"
6358 "SRANDMEMBER" "NIDS/TCP/split"
8922 "SRANDMEMBER" "oid:1.3.6.1.4.1.25623.1.0.901202:category"
8945 "SRANDMEMBER" "login/SSH/success"
10668 "SRANDMEMBER" "HostDetails/OS/cpe:/o:fedoraproject:fedora"
23307 "SRANDMEMBER" "oid:1.3.6.1.4.1.25623.1.0.18183:category"
48151 "SRANDMEMBER" "Host/dead"
48151 "SRANDMEMBER" "Host/ping_failed"
Quite a lot of queries for a mere 60s...
--
Ralf Hildebrandt Charite Universitätsmedizin Berlin
[email protected] Campus Benjamin Franklin
https://www.charite.de Hindenburgdamm 30, 12203 Berlin
Geschäftsbereich IT, Abt. Netzwerk fon: +49-30-450.570.155
_______________________________________________
Openvas-discuss mailing list
[email protected]
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss