Mailing List Archive

plug-in for blank telnet password
Hi,



I am Rakesh and we have installed Nessus 3 for scanning our network. Can
anyone tell me which plug-in I need to select to scan for blank telnet,
FTP, SQL, IIS, WEB server passwords...



Please help me on this ASAP.





Rakesh Mandal.
Email: rmandal@raytel.com



<mailto:rmandal@raytel.com>
RE: plug-in for blank telnet password [ In reply to ]
That's not the way Nessus is design to work you have thousand of plug-in
each for specific use. Any it's not advisable to select all the plug-in
as it might kill some of your server by intense scanning ......

So request you to let me know if you know specific plug-in for the blank
telnet , FTP etc.... password.



Rakesh Mandal.
Email: rmandal@raytel.com



<mailto:rmandal@raytel.com>

_____

From: yarickmirskiy@gmail.com [mailto:yarickmirskiy@gmail.com] On Behalf
Of YARICK
Sent: Wednesday, September 10, 2008 10:30 AM
To: Mandal, Rakesh
Subject: Re: plug-in for blank telnet password



i suggest to select all the plugins and nessus will only run applicable
ones to the hosts detected.



On Wed, Sep 10, 2008 at 8:49 AM, Mandal, Rakesh <rmandal@raytel.com>
wrote:

Hi,



I am Rakesh and we have installed Nessus 3 for scanning our network. Can
anyone tell me which plug-in I need to select to scan for blank telnet,
FTP, SQL, IIS, WEB server passwords...



Please help me on this ASAP.





Rakesh Mandal.
Email: rmandal@raytel.com



<mailto:rmandal@raytel.com>




_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus




--
--Yarick Tsagoyko

Advisory Notice: Email is covered by the Electronic Communications
Privacy Act and is legally privileged, but inherently insecure. Content
may be subject to alteration: email addresses may incorrectly identify
the sender. This email transmission, and any documents, files, or
previous email messages attached to it may be privileged and
confidential, and are intended only for the use of the recipient(s)
named in the address field. If the reader of this message is not an
intended recipient, or the employee or agent responsible to deliver it
to the recipient, you are hereby notified that any dissemination,
distribution, or copying of this message or its contents is strictly
prohibited. If you have received this message in error, please notify me
by telephone or return email and delete it and any attachments from your
computer. Thank you.
Re: plug-in for blank telnet password [ In reply to ]
I am sorry, but it is my understanding that nessus scans a server without
crashing it ( given you have SAFE CHECKS enabled ) and then determines which
plugins are appropriate to run against the given host. For example AIX or
CISCO plugins will not run against a microsoft based host.

you are welcome to search for a specific plugin on www.nessus.org/plugins
which is a very nice search facility for a given plugin by name in
description, for example a word 'telnet'

also, there is a facility to use NASL script language to write your own
checks for specific things like you are talking about. please post them on
this list once you do.



On Wed, Sep 10, 2008 at 10:36 AM, Mandal, Rakesh <rmandal@raytel.com> wrote:

> That's not the way Nessus is design to work you have thousand of plug-in
> each for specific use. Any it's not advisable to select all the plug-in as
> it might kill some of your server by intense scanning ……
>
> So request you to let me know if you know specific plug-in for the blank
> telnet , FTP etc…. password.
>
>
>
> Rakesh Mandal.
> Email: rmandal@raytel.com
>
>
>
> <rmandal@raytel.com>
> ------------------------------
>
> *From:* yarickmirskiy@gmail.com [mailto:yarickmirskiy@gmail.com] *On
> Behalf Of *YARICK
> *Sent:* Wednesday, September 10, 2008 10:30 AM
> *To:* Mandal, Rakesh
> *Subject:* Re: plug-in for blank telnet password
>
>
>
> i suggest to select all the plugins and nessus will only run applicable
> ones to the hosts detected.
>
> On Wed, Sep 10, 2008 at 8:49 AM, Mandal, Rakesh <rmandal@raytel.com>
> wrote:
>
> Hi,
>
>
>
> I am Rakesh and we have installed Nessus 3 for scanning our network. Can
> anyone tell me which plug-in I need to select to scan for blank telnet, FTP,
> SQL, IIS, WEB server passwords…
>
>
>
> Please help me on this ASAP.
>
>
>
>
>
> Rakesh Mandal.
> Email: rmandal@raytel.com
>
>
>
> <rmandal@raytel.com>
>
>
>
>
> _______________________________________________
> Nessus mailing list
> Nessus@list.nessus.org
> http://mail.nessus.org/mailman/listinfo/nessus
>
>
>
>
> --
> --Yarick Tsagoyko
>
> Advisory Notice: Email is covered by the Electronic Communications Privacy
> Act and is legally privileged, but inherently insecure. Content may be
> subject to alteration: email addresses may incorrectly identify the sender.
> This email transmission, and any documents, files, or previous email
> messages attached to it may be privileged and confidential, and are intended
> only for the use of the recipient(s) named in the address field. If the
> reader of this message is not an intended recipient, or the employee or
> agent responsible to deliver it to the recipient, you are hereby notified
> that any dissemination, distribution, or copying of this message or its
> contents is strictly prohibited. If you have received this message in error,
> please notify me by telephone or return email and delete it and any
> attachments from your computer. Thank you.
>



--
--Yarick Tsagoyko

Advisory Notice: Email is covered by the Electronic Communications Privacy
Act and is legally privileged, but inherently insecure. Content may be
subject to alteration: email addresses may incorrectly identify the sender.
This email transmission, and any documents, files, or previous email
messages attached to it may be privileged and confidential, and are intended
only for the use of the recipient(s) named in the address field. If the
reader of this message is not an intended recipient, or the employee or
agent responsible to deliver it to the recipient, you are hereby notified
that any dissemination, distribution, or copying of this message or its
contents is strictly prohibited. If you have received this message in error,
please notify me by telephone or return email and delete it and any
attachments from your computer. Thank you.