Hi,

I stumbled (again) across the question how we should treat
the results of NVTs like os_fingerprint.nasl which
tries to guess some information (here the OS)
and adds this to the KB.
It also sends a security_note about the result.

IMHO this should only be a log_message() as the OS
type as such has not relation to security status.

Other scripts may use the KB entries and report about
OS's that e.g. are not supported by vendor anymore.

Any opinions about this?

Best

        Jan

-- 
Dr. Jan-Oliver Wagner |  ++49-541-335084-0  |  http://www.greenbone.net/
Greenbone Networks GmbH, Neuer Graben 17, 49074 Osnabrück | AG Osnabrück, HR B 
202460
Geschäftsführer: Lukas Grunwald, Dr. Jan-Oliver Wagner
_______________________________________________
Openvas-plugins mailing list
[email protected]
http://lists.wald.intevation.org/mailman/listinfo/openvas-plugins

Reply via email to