Book Image

Practical Network Scanning

By : Ajay Singh Chauhan
Book Image

Practical Network Scanning

By: Ajay Singh Chauhan

Overview of this book

Network scanning is the process of assessing a network to identify an active host network; same methods can be used by an attacker or network administrator for security assessment. This procedure plays a vital role in risk assessment programs or while preparing a security plan for your organization. Practical Network Scanning starts with the concept of network scanning and how organizations can benefit from it. Then, going forward, we delve into the different scanning steps, such as service detection, firewall detection, TCP/IP port detection, and OS detection. We also implement these concepts using a few of the most prominent tools on the market, such as Nessus and Nmap. In the concluding chapters, we prepare a complete vulnerability assessment plan for your organization. By the end of this book, you will have hands-on experience in performing network scanning using different tools and in choosing the best tools for your system.
Table of Contents (19 chapters)
Title Page
Packt Upsell
Contributors
Preface
Index

Nessus installation, configuration, and vulnerability assessment methodology


Nessus is a pretty strong remote security scanning tool which scans devices and raises an alert if it discovers any vulnerabilities that hackers could use to gain access to a computer you have connected to a network.  Within days of the vulnerabilities being released to the public, there will be plugins for new vulnerabilities. Nessus utilizes Nmap for port scanning.

Let's take a step-by-step look at how to scan a specified network and hosts. 

Installation

To download Nessus' latest release, please visit https://www.tenable.com/downloads/nessus. I have chosen to download the package for Windows 2016:

After a successful installation, the console can be accessed on the port 8834https://localhost:8834. Firstly, you will be prompted to provide an activation key  and asked to create a username and password. Nessus will then install all the required files and plugins to scan your assets. Once plugins and files are downloaded...