Educause Security Discussion mailing list archives
Vulnerability Scanning Problem
From: "Logan, Kimberly (loganks)" <LOGANKS () UCMAIL UC EDU>
Date: Mon, 11 Dec 2006 15:55:09 -0500
Hi Everyone, Sorry if this has already been discussed, but.... The University of Cincinnati is using Rapid7's NeXpose as our OS level vulnerability scanner. Last week, we scanned 57 IP addresses and only got returns on 14. We believe the reason is that Microsoft SP2 installed the firewall with ICMP blocked. We don't necessarily want to have it unblocked for all devices, but we need to be able to scan our devices on all subnets. Has anyone experienced this problem and have you been able to find any workarounds without opening things up? Thanks, Kim Kim Logan Information Security Officer University of Cincinnati (513)556-9070 kim.logan () uc edu
Current thread:
- Vulnerability Scanning Problem Logan, Kimberly (loganks) (Dec 11)
- <Possible follow-ups>
- Re: Vulnerability Scanning Problem Michael Hornung (Dec 11)
- Re: Vulnerability Scanning Problem Wang Cheng (Dec 11)
- Re: Vulnerability Scanning Problem Wyman Miles (Dec 12)
- Re: Vulnerability Scanning Problem Graham Toal (Dec 12)
- Re: Vulnerability Scanning Problem Curt Wilson (Dec 12)
- Re: Vulnerability Scanning Problem Russell Fulton (Dec 12)
- Re: Vulnerability Scanning Problem Curt Wilson (Dec 13)
- Re: Vulnerability Scanning Problem Michael Hornung (Dec 13)
- Re: Vulnerability Scanning Problem Mike Wiseman (Dec 13)
- Re: Vulnerability Scanning Problem Russell Fulton (Dec 13)
(Thread continues...)