Search /
Docfinder:
Advanced search  |  Help  |  Site map
RESEARCH CENTERS
SITE RESOURCES
Click for Layer 8! No, really, click NOW!
Networking for Small Business
TODAY'S NEWS
Valentine's Day Patch Tuesday: Microsoft to issue 9 patches, 4 critical
Mobile World Congress sneak peek: Quad-core smartphones, Ice Cream Sandwich & more
Microsoft details 'Windows on ARM' program
March debut of 'iPad 3' a sure bet, says analyst
FBI unbolts Steve Jobs 1991 investigation file
Cisco boosted profit, sales in Q2 while cutting costs
Macs take on the enterprise
Four crazy tech ideas from Google's Solve for X project
Obama 2012 campaign playlist revealed courtesy of Spotify
Oracle buying Taleo for US$1.9 billion in direct hit at SAP
Amazon attacks Apple: You get 3 Kindle products for price of iPad 2
Pre-rendered pages highlight latest Google Chrome release
Microsoft exec: Lync-Skype integration a 'compelling opportunity'
The future of hypervisors
/

Developer previews next version of Nessus security tool

Related linksToday's breaking news
Send to a friendFeedback


LAS VEGAS - A developer of the open-source network-scanning tool Nessus gave attendees of the Black Hat Briefings conference here a sneak peak of the upcoming version of the software Wednesday, touting better and faster scans, improved reporting features and reduced installation time as among the benefits of the new version.

Renaud Deraison, one of Nessus' core developers, made the journey from France to address a room crowded with people, some standing or sitting in aisles to view the demonstration. Nessus, currently at version 1.0.8, is a free security tool, licensed under the GNU Public License, or GPL, a license popular in the open-source and Linux communities that offers less restrictive copyright terms. The software runs on Linux, BSD Unix, Sun Microsystems' Solaris, and performs checks for more than 700 network security issues.

The system is designed around a client-server model, Deraison said, in which the server actually performs the security check and the client is used as an interface to configure and control the server. Nessus also employs a plug-in architecture that allows each different plug-in to perform a specific task and for plug-ins to work in concert with each other. Because of their ability to cooperate, plug-ins can be used for faster and more complex security checks, he said.

Nessus also employs a shared information repository, called the Knowledge Base, where information about previous checks is stored. The software can create reports in Extensible Markup Language, HTML, plain text, LaTeX (a text data format) and more.

Version 1.2, which will be released in September or October, will build on these features to create a better tool for security staffs, Deraison said.

The new version of the software includes a faster installation and an option to install over the Internet using a script launched from Nessus' Web site. It also reduces the bandwidth overhead typically needed to perform full network security checks (which can often run as much as 5M bytes per machine, he said), because Nessus 1.2 can use data obtained from other security tools like nmap, thus avoiding the need for a redundant scan. Reducing the bandwidth used will lower costs of scans as well as make them less intrusive to the network they are checking, he said.

Nessus 1.2 will also run faster than previous versions because it will be able to perform scans in parallel and will be able to store previous scan information in the Knowledge Base, cutting down on the number of tests that have to be run, Deraison said. The new version will be able to scan for security vulnerabilities in generic CGI scripts, which are commonly used on Web servers, and will even be able to do some limited scanning of custom CGIs, which are often vulnerable to simple, older attacks, he said. Scans will also be able to be run continuously in the background.

Lastly, the tool will offer shorter reports, providing only the information that is different since the last scan, thus making the security staff's jobs easier, he said.

And lest anyone wonder what's next, Deraison said that Nessus version 1.4 is already in the planning stages, and will include better reporting, as well as clustering features.

The IDG News Service is a Network World affiliate.

Related Links

Nessus

Error 404--Not Found

Error 404--Not Found

From RFC 2068 Hypertext Transfer Protocol -- HTTP/1.1:

10.4.5 404 Not Found

The server has not found anything matching the Request-URI. No indication is given of whether the condition is temporary or permanent.

If the server does not wish to make this information available to the client, the status code 403 (Forbidden) can be used instead. The 410 (Gone) status code SHOULD be used if the server knows, through some internally configurable mechanism, that an old resource is permanently unavailable and has no forwarding address.

 
NWFusion offers more than 40 FREE technology-specific email newsletters in key network technology areas such as NSM, VPNs, Convergence, Security and more.
Click here to sign up!
New Event - WANs: Optimizing Your Network Now.
Hear from the experts about the innovations that are already starting to shake up the WAN world. Free Network World Technology Tour and Expo in Dallas, San Francisco, Washington DC, and New York.
Attend FREE
Your FREE Network World subscription will also include breaking news and information on wireless, storage, infrastructure, carriers and SPs, enterprise applications, videoconferencing, plus product reviews, technology insiders, management surveys and technology updates - GET IT NOW.