Security Basics mailing list archives

Re: VA vs PT tool


From: Brad Mills <millsmiami () usa net>
Date: Fri, 13 Jun 2003 22:19:24 EDT

James, et al -

I didn't see this on your list below but I would be surprised if no one
had suggested it...

Nessus (www.nessus.org) will do *some* of that depending upon the
vulnerability and how you configure Nessus to do the scan.  The
following are advantages/disadvantages depending upon your point of
view:

1.  Runs on Linux (as a server, there are clients for other platforms
for driving the scans)
2.  Open-source
 (snips)

 (...for windows guys) Grab the latest Knoppix 650-meg *.iso, burn to a CD. 
Boot most any modern machine from it, has Nessus in there, ready to go. May not 
be 'minutes fresh' on updates, but indeed, grabs it's IP from your dhcp server, 
and is ready to rumble in minutes. Best of all, it doesn't touch your windows 
partitions. As well, has ethereal, and nmap installed. An amazing distibution, 
indeedie.
 
 .02,
 /b



---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
     
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
          
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------


Current thread: