Penetration Testing mailing list archives

Re: Port Scanner Reports


From: Syv Ritch <syv () 911networks com>
Date: Tue, 11 Oct 2005 14:06:49 -0700

Jeff Brossette wrote:
All,

I am looking for a port scanning tool (software or hardware, open
source or commercial) that I can configure to run on a regularly
scheduled basis, say
once a week or once a month, for around 500 internal servers and
workstations (Unix/Linux, Windows and Novell).

The goal is to produce a "diff" report that will identify any new
ports that have been opened on any of the servers or workstations from
the previous scan.

This would need to be a completely automatic process that would email
out the results after each scan cycle.

Are there any products that can perform this task?


The best [IMHO] is nmap, you can save the output, use cron to schedule it at different times, then use diff to view the changes. That way, you can create a history.

If nmap is too complicated, use nmapfe [nmap front end] to generate the command line and plug in cron.

Products like GFI scanner, create beautiful web pages to show the customer, "but nmap is still the king."


--
Thanks
http://www.911networks.com
When the network has to work Cisco/Microsoft

------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: