Mailing List Archive

Diff scans
Does Nessus have a built-in capability to report the differences between
2 scans? How is it accomplished and what file formats are supported? I
am currently running scans from the command line on a RHEL v5 box with
nbe output files.
Re: Diff scans [ In reply to ]
Mark A Timm wrote:
> Does Nessus have a built-in capability to report the differences between
> 2 scans? How is it accomplished and what file formats are supported? I
> am currently running scans from the command line on a RHEL v5 box with
> nbe output files.

Nessus does not have this feature.

If you are working at the command line, you can use the 'sort' and 'diff'
commands to see what is different about the two scans.

Ron Gula
Tenable Network Security
_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus
Re: Diff scans [ In reply to ]
I thought Security Center could do this?


__________________________________
Albert R. Campa


On Fri, Nov 7, 2008 at 1:17 PM, Ron Gula <rgula@tenablesecurity.com> wrote:

> Mark A Timm wrote:
> > Does Nessus have a built-in capability to report the differences between
> > 2 scans? How is it accomplished and what file formats are supported? I
> > am currently running scans from the command line on a RHEL v5 box with
> > nbe output files.
>
> Nessus does not have this feature.
>
> If you are working at the command line, you can use the 'sort' and 'diff'
> commands to see what is different about the two scans.
>
> Ron Gula
> Tenable Network Security
> _______________________________________________
> Nessus mailing list
> Nessus@list.nessus.org
> http://mail.nessus.org/mailman/listinfo/nessus
>
Re: Diff scans [ In reply to ]
Hi Albert,

SC3 does this a few different ways:

For each scan, based on what was scanned (targets and checks), SC3 maintains
a list of all current hosts/vulnerabilties and dynamicaly updates this when
new scans are performed.

Also with each scan, as part of the results import process, all "new"
information is highlighted in a seperate report, available to be emailed,
.etc.

One of the cool byproducts of this process is every vulnerability also has
counters and time stamps with it so you can track when a vulnerability
was first seen, last observed and how many times it was observed.

Ron Gula
Tenable Network Security

Albert R. Campa wrote:
> I thought Security Center could do this?
>
>
> __________________________________
> Albert R. Campa
>
>
> On Fri, Nov 7, 2008 at 1:17 PM, Ron Gula <rgula@tenablesecurity.com> wrote:
>
>> Mark A Timm wrote:
>>> Does Nessus have a built-in capability to report the differences between
>>> 2 scans? How is it accomplished and what file formats are supported? I
>>> am currently running scans from the command line on a RHEL v5 box with
>>> nbe output files.
>> Nessus does not have this feature.
>>
>> If you are working at the command line, you can use the 'sort' and 'diff'
>> commands to see what is different about the two scans.
>>
>> Ron Gula
>> Tenable Network Security
>> _______________________________________________
>> Nessus mailing list
>> Nessus@list.nessus.org
>> http://mail.nessus.org/mailman/listinfo/nessus
>>
>
>
> ------------------------------------------------------------------------
>
> _______________________________________________
> Nessus mailing list
> Nessus@list.nessus.org
> http://mail.nessus.org/mailman/listinfo/nessus

_______________________________________________
Nessus mailing list
Nessus@list.nessus.org
http://mail.nessus.org/mailman/listinfo/nessus