Nessus 8.11 User Guide
Total Page:16
File Type:pdf, Size:1020Kb
Nessus 8.11.x User Guide Last Updated: October 29, 2020 Table of Contents Welcome to Nessus 8.11.x 13 Get Started with Nessus 16 Navigate Nessus 18 System Requirements 19 Hardware Requirements 20 Software Requirements 23 Licensing Requirements 26 Deployment Considerations 27 Host-Based Firewalls 28 IPv6 Support 29 Virtual Machines 30 Antivirus Software 31 Security Warnings 32 Manage SSL Certificates 33 Custom SSL Certificates 34 SSL Client Certificate Authentication 35 Create a New Custom CA and Server Certificate 36 Upload a Custom CA Certificate 38 Add a Root CA 39 Create Nessus SSL Certificates for Login 40 Enable Connections with Smart Card or CAC Card 43 Connect with Certificate or Card Enabled Browser 44 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Install Nessus and Nessus Agents 46 Download Nessus 47 Install Nessus 49 Install Nessus on Linux 50 Install Nessus on Windows 52 Install Nessus on Mac OS X 54 Install Nessus Agents 56 Retrieve the Linking Key 57 Install a Nessus Agent on Linux 58 Install a Nessus Agent on Windows 62 Install a Nessus Agent on Mac OS X 66 Link an Agent to Nessus Manager 70 Upgrade Nessus and Nessus Agents 73 Upgrade Nessus 74 Upgrade from Evaluation 75 Update Nessus Software 76 Upgrade Nessus on Linux 79 Upgrade Nessus on Windows 80 Upgrade Nessus on Mac OS X 81 Upgrade a Nessus Agent 82 Downgrade Nessus Software 85 Configure Nessus 86 Install Nessus Essentials, Professional, or Manager 87 Link to Tenable.io 89 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Link to Nessus Manager 91 Managed by Tenable.sc 93 Manage Activation Code 95 View Activation Code 96 Reset Activation Code 97 Update Activation Code 98 Transfer Activation Code 100 Manage Nessus Offline 102 Install Nessus Offline 104 Generate Challenge Code 107 Generate Your License 108 Download and Copy License File (nessus.license) 109 Register Your License with Nessus 110 Download and Copy Plugins 111 Install Plugins Manually 112 Update Nessus Software Manually on an Offline system 114 Offline Update Page Details 116 Back Up Nessus 117 Restore Nessus 118 Remove Nessus and Nessus Agents 120 Nessus Removal 121 Uninstall Nessus on Linux 122 Uninstall Nessus on Windows 124 Uninstall Nessus on Mac OS X 125 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Remove Nessus Agent 126 Uninstall a Nessus Agent on Linux 127 Uninstall a Nessus Agent on Windows 129 Uninstall a Nessus Agent on Mac OS X 130 Scans 131 Scan and Policy Templates 132 Agent Templates 135 Scan and Policy Settings 136 Basic Settings for Scans 137 Scan Targets 142 Basic Settings for Policies 145 Discovery Scan Settings 146 Preconfigured Discovery Scan Settings 155 Assessment Scan Settings 172 Preconfigured Assessment Scan Settings 186 Report Scan Settings 193 Advanced Scan Settings 195 Preconfigured Advanced Scan Settings 199 Credentials 205 Cloud Services 206 Database 209 Host 213 SNMPv3 214 SSH 215 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Windows 227 Miscellaneous 238 Mobile 242 Patch Management 245 Plaintext Authentication 253 Compliance 256 SCAP Settings 258 Plugins 260 Configure Dynamic Plugins 261 Special Use Templates 263 Unofficial PCI ASV Validation Scan 266 Create and Manage Scans 268 Example: Host Discovery 269 Create a Scan 271 Import a Scan 272 Create an Agent Scan 273 Modify Scan Settings 274 Configure an Audit Trail 275 Launch a Scan 276 Stop a Running Scan 277 Delete a Scan 278 Scan Results 279 Create a New Scan from Scan Results 280 Search and Filter Results 281 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Compare Scan Results 287 Dashboard 288 Vulnerabilities 290 View Vulnerabilities 291 Modify a Vulnerability 292 Group Vulnerabilities 293 Snooze a Vulnerability 295 Live Results 297 Enable or Disable Live Results 299 Remove Live Results 300 Scan Exports and Reports 301 Create a Scan Report 302 Export a Scan 305 Customized Reports 306 Customize Report Title and Logo 307 Scan Folders 308 Manage Scan Folders 310 Policies 312 Create a Policy 314 Import a Policy 315 Modify Policy Settings 316 Delete a Policy 317 About Nessus Plugins 318 Create a Limited Plugin Policy 320 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Install Plugins Manually 324 Plugin Rules 326 Create a Plugin Rule 327 Modify a Plugin Rule 328 Delete a Plugin Rule 329 Scanners 330 Link Nessus Scanner 331 Unlink Nessus Scanner 332 Enable or Disable a Scanner 333 Remove a Scanner 334 Download Managed Scanner Logs 335 Agents 336 Modify Agent Settings 338 Agent Settings 339 Filter Agents 340 Export Agents 342 Download Linked Agent Logs 343 Unlink an Agent 344 Agent Groups 345 Create a New Agent Group 346 Configure User Permissions for an Agent Group 347 Modify an Agent Group 349 Delete an Agent Group 350 Blackout Windows 351 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Create a Blackout Window 352 Modify a Blackout Window 353 Delete a Blackout Window 354 Clustering 355 Clustering System Requirements 357 Enable Clustering 359 Migrate Agents to a Cluster 360 Manage Nodes 362 Get Linking Key from Parent Node 363 Link a Node 364 View or Edit a Node 366 Rebalance Nodes 367 Enable or Disable a Node 368 Delete a Node 369 Settings 370 About 371 Set a Master Password 373 Advanced Settings 374 Create a New Setting 404 Modify a Setting 405 Delete a Setting 406 LDAP Server 407 Configure an LDAP Server 408 Proxy Server 409 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Configure a Proxy Server 410 Remote Link 411 SMTP Server 414 Configure an SMTP Server 415 Custom CA 416 Add a Custom CA 417 Upgrade Assistant 418 Password Management 419 Configure Password Management 421 Scanner Health 422 Monitor Scanner Health 424 Notifications 425 Acknowledge Notifications 426 View Notifications 427 Accounts 428 My Account 429 Modify Your User Account 430 Generate an API Key 431 Users 432 Create a User Account 433 Modify a User Account 434 Delete a User Account 435 Transfer User Data 436 Download Logs 437 Copyright © 2020 Tenable, Inc. All rights reserved. Tenable, Tenable.io, Tenable Network Security, Nessus, SecurityCenter, SecurityCenter Continuous View and Log Correlation Engine are registered trade- marks of Tenable,Inc. Tenable.sc, Tenable.ot, Lumin, Indegy, Assure, and The Cyber Exposure Company are trademarks of Tenable, Inc. All other products or services are trademarks of their respective Additional Resources 438 Agent Software Footprint 439 Agent Host System Utilization 440 Amazon Web Services 441 Command Line Operations 442 Start or Stop Nessus 443 Start or Stop a Nessus Agent 445 Nessus-Service 447 Nessuscli 450 Nessuscli Agent 457 Update Nessus Software 463 Configure Nessus for NIAP Compliance 464 Default Data Directories 467 Encryption Strength 468 File and Process Whitelist 469 Manage Logs 471 Mass Deployment Support 478 Nessus