Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Nessus Pro #41

Open
AI0TSec opened this issue Aug 12, 2019 · 1 comment
Open

Nessus Pro #41

AI0TSec opened this issue Aug 12, 2019 · 1 comment

Comments

@AI0TSec
Copy link
Owner

AI0TSec commented Aug 12, 2019

Ubuntu

Nessus

image

文件上传

image

安装

sudo dpkg -i Nessus-8.5.2-ubuntu1110_amd64.deb

image

初始化扫描器

启动服务:service nessusd start
浏览器访问:https://127.0.0.1:8834/

Managed Scanner

image

Tenable.sc

image
image

创建用户名密码

image

插件加载

image

插件离线包下载

获取Challenge code

/opt/nessus/sbin/nessuscli fetch --challenge

image

获取Active code

浏览器访问:http://www.tenable.com/products/nessus-home
First Name 、Last Name 随意输入 ,Email 输入可以接受邮件信息的邮箱

image

输入Challenge code和Active code

登录https://plugins.nessus.org/offline.php

image

下载all-2.0.tar.gz文件

image

在安装目录执行all-2.0.tar.gz文件

image

cd /opt/nessus/sbin
/opt/nessus/sbin/nessuscli update all-2.0.tar.gz

image

启动服务

systemctl start nessusd.service

替换plugin_feed_info.inc文件

替换目录

/opt/nessus/lib/nessus/plugins/plugin_feed_info.inc
/opt/nessus/var/nessus/plugin_feed_info.inc

image

安装成功

image

Windows10

下载Nessus,安装

image
image

若安装过程中出现下图,说明本机已安装Npcap,即WinPcap for Windows 10

image

需卸载本机Npcap,并删除文件C:\ProgramData\TenableC:\Program Files\Tenable后,运行安装包,重新进行安装

image

安装过程中会自动安装WinPcap,安装成功

image

image

image

设置用户名密码

image

管理员启动cmd,运行nessuscli update all-2.0.tar.gz

image

image

重新启动Nessus服务

image

plugin_feed_info.inc文件替换至目录C:\ProgramData\Tenable\Nessus\nessusC:\ProgramData\Tenable\Nessus\nessus\plugins

image
image

重新启动Nessus服务,登录至Web控制台

image

image

更新离线插件集

停止Tenable Nessus服务,管理员运行CMD,输入nessuscli fetch --challenge,获取Challenge code

image

image

获取Active code,访问地址:http://www.tenable.com/products/nessus-home,First Name 、Last Name 随意输入 ,Email 输入可以接受邮件信息的邮箱

image
image

登录https://plugins.nessus.org/offline.php,输入Challenge code和Active code,下载all-2.0.tar.gz与nessus.license文件

image

下载好后,管理员启动cmd,运行nessuscli update all-2.0.tar.gz
image

参考链接:https://mp.weixin.qq.com/s?src=11&timestamp=1571415089&ver=1920&signature=ESDgoADMEhKMZy7IKQv*kz7zLypggPf6cMIZbANwXulYizTK0dtrYiimRHChpswrc2Ra0XzwKtI8oJotOWKDDnHEoE5xUDtjrL3U6pwf7wpHG1h6q7hw0bUYBadUduSb&new=1

@AI0TSec AI0TSec added the Nessus label Aug 12, 2019
@AI0TSec AI0TSec changed the title Nessus Nessus Pro Aug 13, 2019
@AI0TSec AI0TSec added this to 安全工具 in 安全工具/产品 Aug 13, 2019
@AI0TSec AI0TSec moved this from 安全工具 to FW/IPS/IDS/WAF in 安全工具/产品 Aug 13, 2019
@AI0TSec AI0TSec moved this from FW/IPS/IDS/WAF to 安全工具 in 安全工具/产品 Aug 13, 2019
@dongfangyuxiao
Copy link

你好,plugin_feed_info.inc的文件从哪里下载?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
Development

No branches or pull requests

2 participants