Re: [Openvas-discuss] Openvas Setup

2018-08-06 Thread Eero Volotinen
Sounds like you need to ask firewall administrator to open rsync port to
feed.openvas.org tcp/873

Eero

On Mon, Aug 6, 2018 at 10:33 AM Wong Peter  wrote:

> Dear All,
>
> I tried to setup Openvas but it failed to grab the feed update using
> openvas-feed-update command. The error is connection timeout. What wrong
> with it?
> rsync: failed to connect to feed.openvas..org: Connection timed out
>
> Please help. Thanks in advance.
>
> Peter Wong
> 016-396 3326
> ___
> Openvas-discuss mailing list
> Openvas-discuss@wald.intevation.org
> https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss
___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

Re: [Openvas-discuss] Openvas Setup

2018-08-06 Thread Shreyas M R
Hi,

Please provide the logs which gave you this error.

Shreyas M R
about.me/shreyasmrs



On Mon, Aug 6, 2018 at 12:49 PM Wong Peter  wrote:

> Dear All,
>
> I tried to setup Openvas but it failed to grab the feed update using
> openvas-feed-update command. The error is connection timeout. What wrong
> with it?
> rsync: failed to connect to feed.openvas..org: Connection timed out
>
> Please help. Thanks in advance.
>
> Peter Wong
> 016-396 3326
> ___
> Openvas-discuss mailing list
> Openvas-discuss@wald.intevation.org
> https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss
___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

[Openvas-discuss] (no subject)

2018-08-06 Thread Lady Zhu
Hi,
I'm a user of OpenVas. I would like to test a custom plugin using OpenVas.
May I know how to test it through GUI & CLI?
Regards,
Sandara
___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

[Openvas-discuss] sql_exec_internal: sqlite3_step failed: interrupted

2018-08-06 Thread Giovanni Possemato
Hello all,

I have installed Openvas 9 with 400 hosts and 450 tasks.

The server is very slow and sometime appear the message on browser “An internal 
error occurred. Diagnostics: Could not authenticate to

manager daemon.”; looking on openvasmd.log I see these messages:

--

md manage:WARNING: utc:1817: sqlv: sql_exec_internal failed

md manage:WARNING: utc:1819: sql_exec_internal: sqlite3_step failed: interrupted

md manage:WARNING: utc:1819: sqlv: sql_exec_internal failed

--

 
I have installed openvas using the repository ppa:mrazavi/openvas on Ubuntu 
16.04.4 LTS and using sqlite3

 
Openvas9 version is:

##

:~# dpkg -s openvas9

Package: openvas9

Status: install ok installed

Priority: optional

Section: metapackages

Installed-Size: 33

Maintainer: Mohammad Razavi 

Architecture: amd64

Source: openvas9-manager

Version: 7.0.3-1

Replaces: openvas

Depends: openvas9-manager (>= 7.0.3-1), openvas9-scanner (>= 5.1~beta2), 
openvas9-gsa (>= 6.1~beta2), openvas9-cli (>= 1.4)

Recommends: sqlite3, xsltproc

Conflicts: openvas

Description: remote network security auditor - metapackage

 The Open Vulnerability Assessment System is a modular security auditing tool,

 used for testing remote systems for vulnerabilities that should be fixed.

 .

 It is made up of several parts: a manager i.e. the main server openvasmd.

 A scanner openvassd that execute vulnerability checking scripts. A cli and

 a web interface called Greenbone Security Assistant gsad.

Homepage: http://www.openvas.org/

##

 
I have seen a problem like this on 
https://www.mail-archive.com/search?l=openvas-discuss@wald.intevation.org=subject:%22Re%5C%3A+%5C%5BOpenvas%5C-discuss%5C%5D+%5C%5Bext%5C%5D+GSA+7.0.3+Invalid+host+header%22=newest=1.

I have update the system, but the problem persists. Any ideas about it?

 
Thank you

Giovanni

___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

[Openvas-discuss] Openvas Setup

2018-08-06 Thread Wong Peter
Dear All,

I tried to setup Openvas but it failed to grab the feed update using
openvas-feed-update command. The error is connection timeout. What wrong
with it?
rsync: failed to connect to feed.openvas..org: Connection timed out

Please help. Thanks in advance.

Peter Wong
016-396 3326
___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss

[Openvas-discuss] Openvas SSH BruteForce Attempt

2018-08-06 Thread Berkcan GEYİKCİ
Hello sir

I am using Openvas 9 in my Ubuntu virtual machine for educational purposes.

When i scan my other virtual machines with given(username+password) credentials 
of  my local machines and try to listen ssh logs,

i realize that Openvas is trying to connect from ssh with different 
credentials(not my credential) and in the terminal it looks like this;


-Failed password for invalid user netscreen from 192.168.45.1

-Failed password for invalid user super  from 192.168.45.1 port 12269 ssh2

-Received disconnected from 192.168.45.1 port 12269:11: Bye Bye

-Failed password for invalid user chip from 192.168.45.1 port 12274 ssh2

-Received disconnected from 192.168.45.1 port 12274:11: Bye Bye

-Failed password for root from 192.168.45.1 port 12271 ssh2

-Received disconnected from 192.168.45.1 port 12271:11: Bye Bye

-İnvalid User admin from 192.168.45.1

-Input_userauth_request: invalid user admin

...


and bunch of stuff like that

Why Openvas does that?

Even when i disable brute_force_attack and default_accounts from scan config it 
still tries to brute force my ssh.

How can i prevent this?

Thanks


___
Openvas-discuss mailing list
Openvas-discuss@wald.intevation.org
https://lists.wald.intevation.org/cgi-bin/mailman/listinfo/openvas-discuss