PaulDotCom mailing list archives

Re: Enterprise Scan Solution


From: Dan McGinn-Combs <dgcombs () gmail com>
Date: Fri, 3 Dec 2010 12:30:37 -0500

Nils, that's quite a dichotomy you've got going on there...

why not run OpenVAS with Seccubus and make it a completely FOSS system
(Seccubus also runs Nikto)?

I run the Seccubus (can't wait for version 2). But if someone was willing to
put up money for Qualys, I might have to jump on that. No more tinkering
with shell scripts and digging around for permission problems. Yeah, I'm
down with that!
Dan

On Fri, Dec 3, 2010 at 5:12 AM, Nils <nils () hemmann de> wrote:

Hey,
as the IT Security Admin for our company (1000+ IPs) I need to
investigate in an internal scan solution which should include:
vulnerability management (with and without credentials), web application
assessment, report correlation, policy compliance scanning ....
To speed up things a minimal setup time would be a plus, too.

This is what I´ve looked into so far:
* Nessus with Seccubus   ( Cheers Paul :-)  )
* I`m looking at a Qualys appliance on my desk at this very moment

What else are you guys using and what was your decision based on?

Thanks,
Nils


-- 
Dan McGinn-Combs
dgcombs () gmail com
Google Voice: +1 404 492 7532
Peachtree City, Georgia USA
_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

Current thread: