Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 - MANAGING VULNERABILITY ASSESSMENT V1 Manual page 17

Managing vulnerability assessment
Table of Contents

Advertisement

Table 3-2 Nessus Parameters (continued)
Parameter
Disable Pixmaps
Remote
Hostname
Login Username
Enable Key
Authentication
Login Password
Private Key File
Remote Temp Dir Specify the directory on the Nessus client that STRM may use to
Note: If the scanner is configured to use a password, the SSH scanner server to
which STRM connects must support password authentication. If it does not, SSH
authentication for the scanner will fail. Make sure the following line appears exactly
as shown in your sshd_config file, which is typically found in the /etc/ssh directory
on the SSH server:
does not use OpenSSH, the configuration may be slightly different.
To configure the CIDR ranges you wish this scanner to consider:
Step 6
In the text field, enter the CIDR range you wish this scanner to consider or click
a
Browse to select the CIDR range from the network list.
Click Add.
b
Click Save.
Step 7
From the STRM Administration Console menu, select Configurations > Deploy
Step 8
Configuration Changes.
Managing Vulnerability Assessment
Description
Enables (Yes) or Disables (No) pixmaps. If the Nessus
installation includes a graphical client, set this parameter to Yes.
The default is No.
To determine if the Nessus client has graphical interface support,
you must log in to the system that is hosting the Nessus client
and execute the client with no parameters. An error message
appears if no graphical client is installed.
Specify the DNS name or IP address of the system hosting the
Nessus client.
Specifies the username used by STRM to authenticate the SSH
connection.
Enables (Yes) or disables (No) public/private key authentication.
If enabled, STRM attempts to authenticate the SSH connection
using the provided private key. The default is Yes. For more
information, see your SSH documentation for configuring public
key authentication.
If Enable Key Authentication is disabled, specify the password
that STRM uses to authenticate the SSH connection.
If key authentication is disabled, you must set a login password.
Specify the directory path to the file that contains the private key
information. STRM uses the private key to authenticate the SSH
connection, if you are using SSH key based authentication. The
default is /opt/qradar/conf/vis.ssh.key.
This parameter is mandatory if key authentication is enabled.
store temporary files used during the execution of the Nessus
client. These files are removed once the client has successfully
executed. Default setting is /tmp.
PasswordAuthentication yes.
Adding a Nessus Scanner
If your scanner server
15

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager

Table of Contents