Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-08-01 Thread Zairy Fajar via PacketFence-users
It appears that my pf server doesn't see the exchange, how do i fix it?
Please help

On Tue, Jul 30, 2019, 8:33 PM Zairy Fajar  wrote:

> What do I have to do to verify and ensure that?
>
> On Tue, Jul 30, 2019, 8:32 PM Nicolas Quiniou-Briand via PacketFence-users
>  wrote:
>
>>
>>
>> On 2019-07-30 1:44 p.m., Zairy Fajar via PacketFence-users wrote:
>> > 2. Is PacketFence received DHCP traffic from nodes you try to scan
>> > I'm not sure if I understand what you mean correctly, but the client
>> got
>> > ip address from my dhcp server (my router) just fine
>>
>> To trigger a scan, you need to ensure that PacketFence knows IP address
>> of node. PacketFence can't guess IP address of your node if it doesn't
>> see DHCP exchanges between your router and the node.
>> --
>> Nicolas Quiniou-Briand
>> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
>> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
>> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>>
>>
>> ___
>> PacketFence-users mailing list
>> PacketFence-users@lists.sourceforge.net
>> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>>
>
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-30 Thread Zairy Fajar via PacketFence-users
What do I have to do to verify and ensure that?

On Tue, Jul 30, 2019, 8:32 PM Nicolas Quiniou-Briand via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

>
>
> On 2019-07-30 1:44 p.m., Zairy Fajar via PacketFence-users wrote:
> > 2. Is PacketFence received DHCP traffic from nodes you try to scan
> > I'm not sure if I understand what you mean correctly, but the client got
> > ip address from my dhcp server (my router) just fine
>
> To trigger a scan, you need to ensure that PacketFence knows IP address
> of node. PacketFence can't guess IP address of your node if it doesn't
> see DHCP exchanges between your router and the node.
> --
> Nicolas Quiniou-Briand
> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-30 Thread Nicolas Quiniou-Briand via PacketFence-users




On 2019-07-30 1:44 p.m., Zairy Fajar via PacketFence-users wrote:

2. Is PacketFence received DHCP traffic from nodes you try to scan
I'm not sure if I understand what you mean correctly, but the client got 
ip address from my dhcp server (my router) just fine


To trigger a scan, you need to ensure that PacketFence knows IP address 
of node. PacketFence can't guess IP address of your node if it doesn't 
see DHCP exchanges between your router and the node.

--
Nicolas Quiniou-Briand
n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence 
(https://packetfence.org) and Fingerbank (http://fingerbank.org)



___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-30 Thread Zairy Fajar via PacketFence-users
1. Did you still see same error message related to OS ?
Yes

2. Is PacketFence received DHCP traffic from nodes you try to scan
I'm not sure if I understand what you mean correctly, but the client got ip
address from my dhcp server (my router) just fine

On Mon, Jul 29, 2019, 7:01 PM Nicolas Quiniou-Briand via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

>
> On 2019-07-26 6:27 a.m., Zairy Fajar via PacketFence-users wrote:
> > I've tried it but it still doesn't work..
>
> 1. Did you still see same error message related to OS ?
> 2. Is PacketFence received DHCP traffic from nodes you try to scan ?
> --
> Nicolas Quiniou-Briand
> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-29 Thread Nicolas Quiniou-Briand via PacketFence-users



On 2019-07-26 6:27 a.m., Zairy Fajar via PacketFence-users wrote:

I've tried it but it still doesn't work..


1. Did you still see same error message related to OS ?
2. Is PacketFence received DHCP traffic from nodes you try to scan ?
--
Nicolas Quiniou-Briand
n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence 
(https://packetfence.org) and Fingerbank (http://fingerbank.org)



___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-28 Thread Zairy Fajar via PacketFence-users
Hi Nicolas,

I've tried it but it still doesn't work..I even tried to use Wireshark on
the client device to see if there are packets from nessus server's ip
address, but there isn't any..and there's no WMI tab in the "nodes"

I wonder if it has something to do with security event menu? I haven't
configure anything in it..
All I did was creating scan engine, and use it in the connection profiles


On Thu, Jul 25, 2019, 7:21 PM Nicolas Quiniou-Briand via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

> On 2019-07-25 1:52 p.m., Zairy Fajar via PacketFence-users wrote:
> > The one on the pf scan engine configuration?
>
> yes, try to remove it and test again.
>
> --
> Nicolas Quiniou-Briand
> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-25 Thread Nicolas Quiniou-Briand via PacketFence-users

On 2019-07-25 1:52 p.m., Zairy Fajar via PacketFence-users wrote:
The one on the pf scan engine configuration? 


yes, try to remove it and test again.

--
Nicolas Quiniou-Briand
n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence 
(https://packetfence.org) and Fingerbank (http://fingerbank.org)



___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-25 Thread Zairy Fajar via PacketFence-users
Thanks for your reply

The one on the pf scan engine configuration? Yes I have set it to Windows
since all my client devices are Windows, or do I need to set it to linux as
well?


On Thu, Jul 25, 2019, 6:45 PM Nicolas Quiniou-Briand via PacketFence-users <
packetfence-users@lists.sourceforge.net> wrote:

> Hello,
>
> On 2019-07-25 6:32 a.m., Chadwick Boseman via PacketFence-users wrote:
> > pfence pfqueue: pfqueue(7518) WARN: [mac:
> > 11:22:33:44:55:66]
> > Can't find scan engine for 11:22:33:44:55:66 since we don't have it's OS
> >
> > why is this happening? and how to fix this problem?
>
> Did you configure the "OS" parameter for your Nessus scan engine ?
>
>
> https://packetfence.org/doc/PacketFence_Installation_Guide.html#_scanner_definition
> --
> Nicolas Quiniou-Briand
> n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
> Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence
> (https://packetfence.org) and Fingerbank (http://fingerbank.org)
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan on Captive Portal

2019-07-25 Thread Nicolas Quiniou-Briand via PacketFence-users

Hello,

On 2019-07-25 6:32 a.m., Chadwick Boseman via PacketFence-users wrote:

pfence pfqueue: pfqueue(7518) WARN: [mac:
11:22:33:44:55:66]
Can't find scan engine for 11:22:33:44:55:66 since we don't have it's OS

why is this happening? and how to fix this problem?


Did you configure the "OS" parameter for your Nessus scan engine ?

https://packetfence.org/doc/PacketFence_Installation_Guide.html#_scanner_definition
--
Nicolas Quiniou-Briand
n...@inverse.ca  ::  +1.514.447.4918 *140  ::  https://inverse.ca
Inverse inc. :: Leaders behind SOGo (https://sogo.nu), PacketFence 
(https://packetfence.org) and Fingerbank (http://fingerbank.org)



___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Nessus Scan on Captive Portal

2019-07-25 Thread Chadwick Boseman via PacketFence-users
Hi,
I've been struggling on my captive portal scan using nessus..
I can scan my devices just fine when I launch the policy directly from
nessus admin page. But I cannot make my pf captive portal scan registering
device using this nessus engine, the packetfence.log always says:

pfence pfqueue: pfqueue(7518) WARN: [mac:
11:22:33:44:55:66]
Can't find scan engine for 11:22:33:44:55:66 since we don't have it's OS

why is this happening? and how to fix this problem?

any help will be appreciated..

Thanks all
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Nessus scan long time

2017-07-28 Thread Cong Doan via PacketFence-users
Dear all,

I install PacketFence-ZEN-7.1.0 on 1 computer and Nessus 6.10.9 (#97) on
other computer as per topo in attach file.

When i don't config Nessus on Packetfence then Client connect to internet.

When i config Nessus on Packetfence then Client scanned long time (not
stop) and can not connect internet.

I read file packetfence.log in /usr/local/pf/logs i see error:

-
Jul 27 23:35:17 PacketFence-ZEN packetfence_httpd.webservices:
httpd.webservices(2664) INFO: [mac:08:00:27:08:6b:e4] Instantiate profile
default (pf::Connection::ProfileFactory::_from_profile)
Jul 27 23:35:17 PacketFence-ZEN packetfence_httpd.webservices:
httpd.webservices(2664) INFO: [mac:08:00:27:08:6b:e4] New ID generated:
1501173317316be4 (pf::util::generate_id)
Jul 27 23:35:17 PacketFence-ZEN packetfence_httpd.webservices:
httpd.webservices(2664) ERROR: [mac:08:00:27:08:6b:e4] Can't use string
("") as a HASH ref while "strict refs" in use at
/usr/share/perl5/vendor_perl/Net/Nessus/XMLRPC.pm line 666.
---
I don't know where to start to troubleshoot it.

Please advice

Thanks and best regards
--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus Scan fails!!

2017-06-20 Thread Durand fabrice via PacketFence-users

Hello Kehinde,

which nessus version are you running ?

Regards

Fabrice



Le 2017-06-19 à 09:52, Akala Kehinde via PacketFence-users a écrit :

Hi guys,

Anyone got a Nessus scan configuration up and running?

Followed the steps in the admin guide, but I get the following error 
when user connects:


Jun 19 00:20:12 pfence pfqueue: pfqueue(7516) INFO: 
[mac:00:50:ff:b3:7c:00] Instantiate profile SNS 
(pf::Connection::ProfileFactory::_from 
_profile)
Jun 19 00:20:12 pfence pfqueue: pfqueue(7516) INFO: 
[mac:00:50:ff:b3:7c:00] New ID generated: 1497824412477c00 
(pf::util::generate_id)
Jun 19 00:20:13 pfence pfqueue: pfqueue(7516) ERROR: 
[mac:00:50:ff:b3:7c:00] Can't use string ("") as a HASH ref while 
"strict refs" in us e at 
/usr/share/perl5/vendor_perl/Net/Nessus/XMLRPC.pm line 666.

 (pf::api::can_fork::notify)
Jun 19 00:20:34 pfence pfqueue: pfqueue(7518) INFO: 
[mac:00:50:ff:b3:7c:00] Instantiate profile SNS 
(pf::Connection::ProfileFactory::_from 
_profile)
Jun 19 00:20:56 pfence pfqueue: pfqueue(7518) WARN: 
[mac:00:50:ff:b3:7c:00] Can't find scan engine for 00:50:ff:b3:7c:00 
since we don't ha   ve it's OS 
(pf::Connection::Profile::findScan)
Jun 19 00:20:57 pfence pfqueue: pfqueue(7521) INFO: 
[mac:00:50:ff:b3:7c:00] Instantiate profile default 
(pf::Connection::ProfileFactory::_ from_profile)
Jun 19 00:21:19 pfence pfqueue: pfqueue(7518) INFO: 
[mac:00:50:ff:b3:7c:00] Instantiate profile default 
(pf::Connection::ProfileFactory::_ from_profile)


I read somewhere in the doc that the /XMLRPC.pm error is a known one 
and normal. But nothing works i.e action specified in the violation 
conf taks no effect.



Regards,
Kehinde


--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot


___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Nessus Scan fails!!

2017-06-19 Thread Akala Kehinde via PacketFence-users
Hi guys,

Anyone got a Nessus scan configuration up and running?

Followed the steps in the admin guide, but I get the following error when
user connects:

Jun 19 00:20:12 pfence pfqueue: pfqueue(7516) INFO: [mac:00:50:ff:b3:7c:00]
Instantiate profile SNS (pf::Connection::ProfileFactory::_from
  _profile)
Jun 19 00:20:12 pfence pfqueue: pfqueue(7516) INFO: [mac:00:50:ff:b3:7c:00]
New ID generated: 1497824412477c00 (pf::util::generate_id)
Jun 19 00:20:13 pfence pfqueue: pfqueue(7516) ERROR:
[mac:00:50:ff:b3:7c:00] Can't use string ("") as a HASH ref while "strict
refs" in us   e at
/usr/share/perl5/vendor_perl/Net/Nessus/XMLRPC.pm line 666.
 (pf::api::can_fork::notify)
Jun 19 00:20:34 pfence pfqueue: pfqueue(7518) INFO: [mac:00:50:ff:b3:7c:00]
Instantiate profile SNS (pf::Connection::ProfileFactory::_from
  _profile)
Jun 19 00:20:56 pfence pfqueue: pfqueue(7518) WARN: [mac:00:50:ff:b3:7c:00]
Can't find scan engine for 00:50:ff:b3:7c:00 since we don't ha
  ve it's OS
(pf::Connection::Profile::findScan)
Jun 19 00:20:57 pfence pfqueue: pfqueue(7521) INFO: [mac:00:50:ff:b3:7c:00]
Instantiate profile default (pf::Connection::ProfileFactory::_
  from_profile)
Jun 19 00:21:19 pfence pfqueue: pfqueue(7518) INFO: [mac:00:50:ff:b3:7c:00]
Instantiate profile default (pf::Connection::ProfileFactory::_
  from_profile)

I read somewhere in the doc that the /XMLRPC.pm error is a known one and
normal. But nothing works i.e action specified in the violation conf taks
no effect.


Regards,
Kehinde
--
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] nessus scan ok but does not automatically work

2015-10-23 Thread joaoteixeira24

Hello,

PF 5.4.0
Nessus 6

I am new at this, but I have some knowledge.

I  found on community a patch for nessus 6 and i applied
I followed the manual and it was possible to integrate your nessus with PF
but there is a problem, I have to go directly to the node running the scan.
otherwise not isolate the client.

someone can help me :)
or give a possible idea?

I'm Spanish,
I know that English is not very good :)

Thanks
 
--
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus scan

2015-10-14 Thread ismael flavio silva
hello,

ok I will apply patch

Thanks Fabrice

I have a doubt.

I read in the PF administration guide that there is a problem with module Net 
:: Nessus :: XMLRPC

this module already comes installed with the PF? or must be installed?

I think that's why the PF can not call the nessus to scan the client.

sorry my bad english :)



Thanks


To: packetfence-users@lists.sourceforge.net
From: fdur...@inverse.ca
Date: Tue, 13 Oct 2015 20:38:53 -0400
Subject: Re: [PacketFence-users] PF 5.40 pfsetvlan and snmptrapd BUG


  

  
  
Hello,



yes you need to apply the patch.



Regards

Fabrice





Le 2015-10-13 17:50, ismael flavio
  silva a écrit :



  
  hello,



ok.. works :)



thanks



I have a question...



I was using the PF 5.3.1 and wanted to use nessus to scan the
client



They said they needed a patch



on the PF 5.4.0 i need it?



here the patch:

https://patch-diff.githubusercontent.com/raw/inverse-inc/packetfence/pull/647.diff

 

So in /usr/local/pf/ do:

wget

https://patch-diff.githubusercontent.com/raw/inverse-inc/packetfence/pull/647.diff

 

patch -p1 --dry-run < 647.diff

patch -p1 < 647.diff

 

rpm -ivh

http://inverse.ca/downloads/PacketFence/RHEL6/devel/x86_64/RPMS/perl-Net-Nessus-REST-0.2-3.4.noarch.rpm

 

"Then restart packetfence , when it's done go in scan engine and
you will

see a new scan engine nessus6."



sorry my bad english :)



Thanks




  From: lmu...@inverse.ca

  Date: Mon, 12 Oct 2015 07:42:32 -0400

  To: packetfence-users@lists.sourceforge.net

  Subject: Re: [PacketFence-users] PF 5.40 pfsetvlan and
  snmptrapd BUG

  

  That bug is fixed in maintenance.
  

  
  Run 
  

  
  # perl /usr/local/pf/addons/pf-maint.pl
  

  
  

  
  Why are you starting those services?
  Unless you use port security you should not need them.
  


  
--
Louis
  Munro

  lmu...@inverse.ca
   ::  www.inverse.ca 

  +1.514.447.4918 x125  :: +1 (866) 353-6153 x125

  Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and 
PacketFence (www.packetfence.org)
  




  
On Oct 10, 2015, at 21:40 , ismael flavio silva
  
  wrote:


  
Hello
 
I am installing pf 5:40 to enforce
  vlan
 
when selected the pfsetvan and
  snmptrapd to start, it displays this error
 
packefence.log
 
ERROR: Failed to load module pf ::
  Switch :: packetfence: packetfence (mp :: ::
  SwitchFactory getModule)
 
ERROR: Can not load perl module
  switch is 127.0.0.1, type: packetfence. The type
  is unknown or perl module has compilation errors
  (please SwitchFactory :: :: _ ANON__)
 
pfcmd.pl (4740) FATAL: Can't call
  mothod "new" on an undefined value at
  /usr/local/pf/lib/pf/SwitchFactory.pm line 165
 
at the first start all ok. I deleted
  the switch´s default and added my swicth. Not work
  anymore :(
 
Thanks
  
  
--
  ___
  PacketFence-users mailing list
  PacketFence-users@lists.sourceforge.net
  https://lists.sourceforge.net/lists/listinfo/packetfence-users
  



  
  

--

  ___
  PacketFence-users mailing list
  PacketFence-users@lists.sourceforge.net
  https://lists.sourceforge.net/lists/listinfo/packetfence-users
  
  

  
  

  
--

 

Re: [PacketFence-users] Nessus scan.... remotescan.nessus?

2015-10-08 Thread ismael flavio silva
Hello,

how can I install this patch? For nessus 6

 Software:

 - PacketFenceversion 5.3.1

 - Nessus6 64bit (lastest version)

I found it https://rt.cpan.org/Public/Bug/Display.html?id=78274 

how can I install this patch?

thanks

Enviado do Correio para Windows 10



De: Durand fabrice
Enviado: 8 de outubro de 2015 02:07
Para: packetfence-users@lists.sourceforge.net
Assunto: Re: [PacketFence-users] Nessus scan remotescan.nessus?


Hello,

first question, what is the version of your nessus server ?
If it's version 6 then you will have to apply a patch to your installation.

Regards
Fabrice

Le 2015-10-07 11:43, ismael flavio silva a écrit :
 
 
Hello 
 
I'm trying to put nessus to work with packetfence
 
packetfence (local)
nessus (local)
 
pf.conf
 
[scan]
 
engine = nessus
registration = enabled
duration = 60s
host = 127.0.0.1
user = root
pass = toor
nessus_port = 8834
 
I saw somewhere that it is necessary to put the remotescan.nessus file.
 
i have to put it?
 
 
Enviado do Correio para Windows 10



--
Full-scale, agent-less Infrastructure Monitoring from a single dashboard
Integrate with 40+ ManageEngine ITSM Solutions for complete visibility
Physical-Virtual-Cloud Infrastructure monitoring from one console
Real user monitoring with APM Insights and performance trend reports 
Learn More http://pubads.g.doubleclick.net/gampad/clk?id=247754911=/4140



___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users



--
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users
--
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus scan.... remotescan.nessus?

2015-10-08 Thread Fabrice DURAND
Hello,

here the patch:
https://patch-diff.githubusercontent.com/raw/inverse-inc/packetfence/pull/647.diff

So in /usr/local/pf/ do:
wget
https://patch-diff.githubusercontent.com/raw/inverse-inc/packetfence/pull/647.diff

patch -p1 --dry-run < 647.diff
patch -p1 < 647.diff

rpm -ivh
http://inverse.ca/downloads/PacketFence/RHEL6/devel/x86_64/RPMS/perl-Net-Nessus-REST-0.2-3.4.noarch.rpm

Then restart packetfence , when it's done go in scan engine and you will
see a new scan engine nessus6.


Regards
Fabrice

Le 2015-10-08 15:33, ismael flavio silva a écrit :
>
> Hello,
>
>  
>
> how can I install this patch? For nessus 6
>
>
> Software:
>
> - PacketFenceversion 5.3.1
>
> - Nessus6 64bit (lastest version)
>
>  
>
> I found it https://rt.cpan.org/Public/Bug/Display.html?id=78274
>
>  
>
> how can I install this patch?
>
>
> thanks
>
>  
>
> Enviado do Correio <http://go.microsoft.com/fwlink/?LinkId=550986>
> para Windows 10
>
>  
>
>  
>
>
> *De: *Durand fabrice
> *Enviado: *8 de outubro de 2015 02:07
> *Para: *packetfence-users@lists.sourceforge.net
> *Assunto: *Re: [PacketFence-users] Nessus scan remotescan.nessus?
>
>  
>
>  
>
> Hello,
>
> first question, what is the version of your nessus server ?
> If it's version 6 then you will have to apply a patch to your
> installation.
>
> Regards
> Fabrice
>
> Le 2015-10-07 11:43, ismael flavio silva a écrit :
>
>  
>
>  
>
> Hello
>
>  
>
> I'm trying to put nessus to work with packetfence
>
>  
>
> packetfence (local)
>
> nessus (local)
>
>  
>
> pf.conf
>
>  
>
> [scan]
>
>  
>
> engine = nessus
>
> registration = enabled
>
> duration = 60s
>
> host = 127.0.0.1
>
> user = root
>
> pass = toor
>
> nessus_port = 8834
>
>  
>
> I saw somewhere that it is necessary to put the remotescan.nessus
> file.
>
>  
>
> i have to put it?
>
>  
>
>  
>
> Enviado do Correio <http://go.microsoft.com/fwlink/?LinkId=550986>
> para Windows 10
>
>
>
>
> 
> --
>
> Full-scale, agent-less Infrastructure Monitoring from a single dashboard
>
> Integrate with 40+ ManageEngine ITSM Solutions for complete visibility
>
> Physical-Virtual-Cloud Infrastructure monitoring from one console
>
> Real user monitoring with APM Insights and performance trend reports 
>
> Learn More 
> http://pubads.g.doubleclick.net/gampad/clk?id=247754911=/4140
>
>
>
>
> ___
>
> PacketFence-users mailing list
>
> PacketFence-users@lists.sourceforge.net
> <mailto:PacketFence-users@lists.sourceforge.net>
>
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
>  
>
>  
>
>  
>
>
>
> --
>
>
> ___
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/packetfence-users


-- 
Fabrice Durand
fdur...@inverse.ca ::  +1.514.447.4918 (x135) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org) 



0xF78F957E.asc
Description: application/pgp-keys
--
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus scan.... remotescan.nessus?

2015-10-07 Thread Durand fabrice

Hello,

first question, what is the version of your nessus server ?
If it's version 6 then you will have to apply a patch to your installation.

Regards
Fabrice


Le 2015-10-07 11:43, ismael flavio silva a écrit :


Hello

I'm trying to put nessus to work with packetfence

packetfence (local)

nessus (local)

pf.conf

[scan]

engine = nessus

registration = enabled

duration = 60s

host = 127.0.0.1

user = root

pass = toor

nessus_port = 8834

I saw somewhere that it is necessary to put the remotescan.nessus file.

i have to put it?

Enviado do Correio  
para Windows 10




--
Full-scale, agent-less Infrastructure Monitoring from a single dashboard
Integrate with 40+ ManageEngine ITSM Solutions for complete visibility
Physical-Virtual-Cloud Infrastructure monitoring from one console
Real user monitoring with APM Insights and performance trend reports
Learn More http://pubads.g.doubleclick.net/gampad/clk?id=247754911=/4140


___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


--
___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[PacketFence-users] Nessus scan.... remotescan.nessus?

2015-10-07 Thread ismael flavio silva


Hello 

I'm trying to put nessus to work with packetfence

packetfence (local)
nessus (local)

pf.conf

[scan]

engine = nessus
registration = enabled
duration = 60s
host = 127.0.0.1
user = root
pass = toor
nessus_port = 8834

I saw somewhere that it is necessary to put the remotescan.nessus file.

i have to put it?


Enviado do Correio para Windows 10
--
Full-scale, agent-less Infrastructure Monitoring from a single dashboard
Integrate with 40+ ManageEngine ITSM Solutions for complete visibility
Physical-Virtual-Cloud Infrastructure monitoring from one console
Real user monitoring with APM Insights and performance trend reports 
Learn More http://pubads.g.doubleclick.net/gampad/clk?id=247754911=/4140___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [PacketFence-users] Nessus scan setup

2013-09-11 Thread Berlin, Amanda - Information Systems
Also Nessus logs look fine

 

[Wed Sep 11 09:45:19 2013][1875.26464] User 'pfnessus' logged in via the
XMLRPC interface

[Wed Sep 11 09:45:19 2013][1875.1] [nessusd_www_server] successful login
of 'pfnessus' from 127.0.0.1 via HTTPS

[Wed Sep 11 09:45:20 2013][1875.26480] User pfnessus starts a new scan
(f77eb274-2251-f57f-8434-029c31075e311e28e3867522952f)

[Wed Sep 11 09:45:20 2013][1875.26480] Reducing max_hosts to 16
(HomeFeed)

[Wed Sep 11 09:45:20 2013][1875.26480] user pfnessus starts a new scan.
Target(s) : 10.9.1.11, with max_hosts = 16 and max_checks = 5

[Wed Sep 11 09:45:20 2013][1875.26480] Full audit trail enabled

[Wed Sep 11 09:45:20 2013][1875.26480] user pfnessus : testing 10.9.1.11
(10.9.1.11) [26487]

[Wed Sep 11 09:51:36 2013][1875.26487] Finished testing 10.9.1.11. Time
: 376.62 secs

[Wed Sep 11 09:51:42 2013][1875.26480] user pfnessus : test complete

[Wed Sep 11 09:51:42 2013][1875.26480] Scan done: 1 hosts up

[Wed Sep 11 09:51:42 2013][1875.26480] Total time to scan all hosts :
382 seconds

[Wed Sep 11 09:51:43 2013][1875.1] Task
f77eb274-2251-f57f-8434-029c31075e311e28e3867522952f is finished

[Wed Sep 11 09:52:00 2013][1875.1] [nessusd_www_server] User pfnessus
(127.0.0.1) successfully logged out

 

Amanda Berlin

 

--
How ServiceNow helps IT people transform IT departments:
1. Consolidate legacy IT systems to a single system of record for IT
2. Standardize and globalize service processes across IT
3. Implement zero-touch automation to replace manual, redundant tasks
http://pubads.g.doubleclick.net/gampad/clk?id=5127iu=/4140/ostg.clktrk___
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[Packetfence-users] Nessus scan question

2012-02-17 Thread Sallee, Stephen (Jake)
Does anyone here use the nessus scan function in PF, if so what vulnerabilities 
do you scan for?

Would anyone be willing to share their scan config so we could build from it?

Jake Sallee
Godfather of Bandwidth
Network Engineer
University of Mary Hardin-Baylor

900 College St.
Belton, Texas
76513

Fone: 254-295-4658
Phax: 254-295-4221

--
Virtualization  Cloud Management Using Capacity Planning
Cloud computing makes use of virtualization - but cloud computing 
also focuses on allowing computing to be delivered as a service.
http://www.accelacomm.com/jaw/sfnl/114/51521223/
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [Packetfence-users] Nessus scan and autoregister

2012-01-18 Thread Olivier Bilodeau
On 17/01/12 9:36 AM, Stefano Zanarini wrote:
 are there any ways to achive similar results without using the
 shouldautoregister function , avoiding the issue (I was thinking
 to violations with autoreg action).
 
 What should be the ususal way to scan 802.1x authenticated users' machines  ?
 Making them register throught the captive portal ?
 

On the shouldAutoRegister or getNodeInfoForAutoreg hooks you could
execute the scan command in a non-blocking fashion. Using perl's exec()
or maybe with  at the end of the command. If you block (system(),
pf_run(), etc.) VLAN assignment will fail

Command looks like:

# pfcmd schedule now ip-to-scan

The IP to scan might be hard to fetch as it will probably not be
assigned.. That's the difficulty. Look at the pf::iplog module for
helper function to get an IP from a MAC.

If you get it to work reliably and cleanly consider contributing a patch
to the project!

Cheers!
p.s.: this feature would be open for sponsorship also
-- 
Olivier Bilodeau
obilod...@inverse.ca  ::  +1.514.447.4918 *115  ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence
(www.packetfence.org)

--
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


[Packetfence-users] Nessus scan and autoregister

2012-01-17 Thread Stefano Zanarini

Hi,

I've 2 wlan, a guest one with captive portal and an 802.1x authenticated one
(on AD using freeradius), and I've used the shouldAutoRegister hook to 
autoregister devices on the authenticated wlan, with something like:


if ($ssid =~ /AuthWLAN/)
{
$logger-trace(E' un utente che viene dalla Man-guest, lo 
autoregistro);
return 1;

}
-

what I would like to achive now is to scan hosts with nessus before autoregister
them, to verify that they are compliance with some kind of policies, but setting

--
[scan]
registration=enabled
--

in pf.conf, enables scanning only on nodes of the guest wlan, autoregisterd 
devices aren't
scanned .



How can I achive this ? 



Regards


-- 
YACME S.r.l.
Via Majani, 2 - 40122 Bologna (BO)
Phone: +39 051 538709

--
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [Packetfence-users] Nessus scan and autoregister

2012-01-17 Thread Francois Gaudreault
Hi Stefano,

We are aware of this issue.  It is documented here:
http://www.packetfence.org/bugs/view.php?id=1189

This is something we will likely fix in the future.

On 12-01-17 3:40 AM, Stefano Zanarini wrote:
 Hi,

 I've 2 wlan, a guest one with captive portal and an 802.1x authenticated one
 (on AD using freeradius), and I've used the shouldAutoRegister hook to
 autoregister devices on the authenticated wlan, with something like:

 
 if ($ssid =~ /AuthWLAN/)
  {
  $logger-trace(E' un utente che viene dalla Man-guest, lo 
 autoregistro);
  return 1;

  }
 -

 what I would like to achive now is to scan hosts with nessus before 
 autoregister
 them, to verify that they are compliance with some kind of policies, but 
 setting

 --
 [scan]
 registration=enabled
 --

 in pf.conf, enables scanning only on nodes of the guest wlan, autoregisterd 
 devices aren't
 scanned .



 How can I achive this ?



 Regards




-- 
Francois Gaudreault, ing. jr
fgaudrea...@inverse.ca  ::  +1.514.447.4918 (x130) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence 
(www.packetfence.org)


--
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [Packetfence-users] Nessus scan and autoregister

2012-01-17 Thread Stefano Zanarini

- Messaggio originale -
 Hi Stefano,
 
 We are aware of this issue.  It is documented here:
 http://www.packetfence.org/bugs/view.php?id=1189
 
 This is something we will likely fix in the future.

are there any ways to achive similar results without using the
shouldautoregister function , avoiding the issue (I was thinking
to violations with autoreg action).

What should be the ususal way to scan 802.1x authenticated users' machines  ?
Making them register throught the captive portal ?



Regards

--
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users


Re: [Packetfence-users] Nessus scan and autoregister

2012-01-17 Thread Francois Gaudreault
Hi,
 What should be the ususal way to scan 802.1x authenticated users' machines  ?
 Making them register throught the captive portal ?
If your machines are using Windows for the major part, you should look 
at using SoH (Statement of Health), also known as Microsoft NAP.  It 
will send the AV, Anti-Spyware, Updates, and Firewall status to the 
RADIUS server, and PF can take action based on the health status.

-- 
Francois Gaudreault, ing. jr
fgaudrea...@inverse.ca  ::  +1.514.447.4918 (x130) ::  www.inverse.ca
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence 
(www.packetfence.org)


--
Keep Your Developer Skills Current with LearnDevNow!
The most comprehensive online learning library for Microsoft developers
is just $99.99! Visual Studio, SharePoint, SQL - plus HTML5, CSS3, MVC3,
Metro Style Apps, more. Free future releases when you subscribe now!
http://p.sf.net/sfu/learndevnow-d2d
___
Packetfence-users mailing list
Packetfence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users