nasl scripts / reliance / port-scanners
Michel Arboi
mikhail at nessus.org
Tue Dec 21 16:48:46 EST 2004
On Tue Dec 21 2004 at 22:16, Stuart Kendrick wrote:
> when i disable all port scanners ... i haven't detected any change in the
> number of attack NASLs which run ...
Because you don't "optimize" or "consider unscanned ports as closed".
Anyway the results might be different.
> so .... do all/most/some NASLs ignore the port scanner output ... and just
> run anyway? or do they run against default ports only, if port scanner
> output is unavailable?
They run on default port if there is one optimization options
are not set.
> [and if port scanner output is available ... then
> do NASLs run against *all* open ports
No. They run on relevant ports.
> at the price of running against things like sendmail listening on
> port 25 ...
No. Only find_service and similar plugins run against every open port.
> what does port scanning buy me, in terms of which NASLs get
> launched?
More results.
More information about the Nessus
mailing list