nessus禁ping扫描

Host Discovery with Ping Disabled



前言

Some network devices do not allow ping or do not handle ping well while Nessus is performing host discovery scans.
An alternative discovery scan method to ping is to enable a scan to perform port scanning without performing a ping request.

客户的主机禁ping了,默认扫描的话是扫不出东西的,需要修改扫描的配置。
ps:nmap -Pn参数可以绕过ping扫描,如下图所示。
在这里插入图片描述


一、Step

Tenable.sc

1.Log in to Tenable.sc.
2.In the top navigation, click Scans, then Policies.
3.In the top-right corner, click Add.
4.Under the Custom header, click Advanced Scan.
5.In the left settings menu, click Host Discovery.
6.Disable Ping the remote host.
7.In the left settings menu, click Port Scanning.
8.Change the Port scan range from default to the desired range of ports to be scanned. The more ports, the slower the scan will be.
Note: Include at least one port that is known to be open on all targets within the range. This may require more than one port.
9.In the left settings menu, click Plugins.
10.Disable all plugins.
11.Set any other policy settings needed such as the Name under Setup.
12.Save the policy.
13.Either create a new Active Scan or edit an existing one to use this new policy.
14.Run the scan.

The results of this scan can be used to update an Asset List for launching subsequent scans against.


二、结果

16:21扫描该主机完成,但host为0,如下图所示:
在这里插入图片描述
但查看日志,有1个host up如下图所示:
在这里插入图片描述

  • 21
    点赞
  • 7
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值