Nessus Essentials

Although OpenVAS is a popular open source vulnerability scanner, Tenable now offers its Nessus scanner product in three versions. You can purchase a Nessus Professional license as a one-time purchase or as a subscription. The Nessus Professional license includes one of the most advanced and up-to-date vulnerability scanning solutions available. Tenable also offers the Nessus Essentials license. The Essentials license is free to use for up to 16 IP addresses, and makes it a great option for students and entry-level security practitioners.

Nessus makes it easy to conduct many types of vulnerability scans with options that fit almost any security practitioner’s needs. The Essentials license doesn’t include some of the more advanced options, but it will show you what the more advanced licenses can do for you. The Nessus product relatively straightforward to use. Unless you need to modify specific settings, you select the type of scan you want, tell Nessus what target IPs to scan, and then start the scan. Nessus carries out the requested scans and provides detailed results of what it finds.

FIGURE 7-14 Nessus Essentials desktop.

A screenshot shows the results from a Rapid7nexpose scan in a Nessus Essentials desktop. The scan templates are listed and some of them are advanced scan, malware scan, badlock detection, credential patch audit, and wannacry ransomware.

FIGURE 7-14
Nessus Essentials desktop.

Reprinted with permission from Tenable, Inc.

FIGURE 7-15 shows the results of and advanced scan with summary information listed for each target, and FIGURE 7-16 shows a sample page form the Nessus Essentials exported summary report.

A screenshot shows the Rapid7nexpose report output options in a Nessus Essentials desktop. The host tab is selected and the full network scan results are displayed. Also, the right pane displays the scan details and vulnerabilities.

FIGURE 7-15
Results from a Nessus Essentials advanced scan.

Reprinted with permission from Tenable, Inc.

A screenshot shows the executive summary of the Rapid7nexpose scan results. Here, the severity, CVSS, plugin number, and name are listed under the vulnerabilities. The representations for the severity, namely critical, high, medium, low, and info are displayed at the top.

FIGURE 7-16
Sample page from a Nessus Essentials exported summary scan report.

Reprinted with permission from Tenable, Inc.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.191.234.150