Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Thijs Stuurman
My best guess is that you didn’t load in the right CA certificate from your slave at step: CA Certificate: The certificate you gathered from the slave Thijs Stuurman Security Operations Center | KPN Internedservices B.V. thijs.stuur...@internedservices.nl

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Louis Bohm
According to the doc it says to use: ${CMAKE_INSTALL_PREFIX}"/var/lib/openvas/CA/servercert.pem. On CentOS 7 that turns out to be: /var/lib/openvas/CA/servercert.pem according to openvas-manage-certs -V [root@pci-sec02 ~]# openvas-manage-certs -V OK: Directory for keys (/var/lib/openvas/private/C

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Thijs Stuurman
Try the /var/lib/openvas/CA/cacert.pem from your slave. Thijs Stuurman Security Operations Center | KPN Internedservices B.V. thijs.stuur...@internedservices.nl | thijs.stuur...@kpn.com T: +31(0)299476185 | M: +31(0)6243667

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Louis Bohm
That yelled me this on the client but still the scan has not progressed from Requested. Client: lib serv: DEBUG:2018-02-23 14h37.52 utc:25578:Shook hands with peer. md main: DEBUG:2018-02-23 14h37.52 utc:25578:Serving OMP. md main: DEBUG:2018-02-23 14h37.52 utc:25578: <= client I

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Thijs Stuurman
I never had an issue with it. Sometimes the initial Requested state takes a minute orso. Often it seems to take a couple before an actual nmap starts and the jobs goes to 1% and later beyond. I cannot help you any further at this point; perhaps I can check something for you on my setup? Let me

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Louis Bohm
I got it working but not sure why. So if I use a username/password and set the credential to allow insecure=yes the client comes back with a 200 response but does nothing. If I change the credential to allow insecure=no the client comes back with: md main: DEBUG:2018-02-23 15h01.16 UTC:2578

Re: [Openvas-discuss] Timeout when scanning all UDP ports

2018-02-23 Thread Christian Fischer
Hi, On 16.02.2018 13:59, Yves Gattegno wrote: > I'd like to set the parameters so that I can scan all UDP ports but I > can't figure our which parameters to tune and what values to set. you probably need to raise the "scanner_plugins_timeout" [1] of your scan configuration which is a timeout (in

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Thijs Stuurman
gvmd is the new name of openvasmd (OpenVAS 9 trunk.. not in the latest on the website). I do use an entire stack on my slaves, just without gsad. > The url says to add a listen=0.0.0.0 port=9393 for openvasmd on the slave. It does not? https://blog.haardiek.org/setup-openvas-as-master-and-slave.

Re: [Openvas-discuss] Scanner Master Slave setup

2018-02-23 Thread Thijs Stuurman
Somewhere in my old notes I see port 9393 was used by openvasad, perhaps part of OpenVAS 8? I don’t have it anymore. Thijs Stuurman Security Operations Center | KPN Internedservices B.V. thijs.stuur...@internedservices.nl | thijs.stuur...@kpn.com

[Openvas-discuss] Virtual Appliance, No Configuration -> Schedule menu item

2018-02-23 Thread Ian Harding
Hi! I downloaded the virtual appliance version and have it up and working but I can't seem to find a couple menu items that are supposed to be available, or to get to a real command shell for troubleshooting the dreaded "SCAP and/or CERT database missing on OMP server" message.  SSH just lead