{"id":19491,"date":"2017-04-04T06:03:05","date_gmt":"2017-04-03T22:03:05","guid":{"rendered":"https:\/\/2blog.ilc.edu.tw\/25793\/2017\/04\/04\/%e5%9c%a8-centos-7-x-%e4%b8%8a%e5%ae%89%e8%a3%9d-openvas\/"},"modified":"2021-03-18T17:24:58","modified_gmt":"2021-03-18T09:24:58","slug":"%e5%9c%a8-centos-7-x-%e4%b8%8a%e5%ae%89%e8%a3%9d-openvas","status":"publish","type":"post","link":"https:\/\/2blog.ilc.edu.tw\/25793\/2017\/04\/04\/%e5%9c%a8-centos-7-x-%e4%b8%8a%e5%ae%89%e8%a3%9d-openvas\/","title":{"rendered":"\u5728 CentOS 7.x \u4e0a\u5b89\u88dd OpenVAS"},"content":{"rendered":"<p>\u5b98\u65b9\u7db2\u7ad9\uff1a <br \/><a href=\"http:\/\/www.openvas.org\/index.html\" target=\"_blank\" rel=\"noopener noreferrer\">http:\/\/www.openvas.org\/index.html<\/a> <\/p>\n<p>\u53c3\u8003\u7db2\u7ad9\uff1a <br \/><a href=\"http:\/\/forums.atomicorp.com\/viewtopic.php?f=31&amp;t=8047\" target=\"_blank\" rel=\"noopener noreferrer\">http:\/\/forums.atomicorp.com\/viewtopic.php?f=31&amp;t=8047<\/a> <br \/><a href=\"https:\/\/leeilu.blogspot.tw\/2016\/03\/openvas8-on-centos7.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u96fb\u8166\u7b46\u8a18\u672c: OpenVas8 on CentOS7<\/a> <br \/> <a href=\"http:\/\/yccitman.blogspot.tw\/2015\/08\/cent-os-7-install-openvas.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u5875\u4e16\u6d6e\u6c89\u8fd1\u5343\u79cb: Cent OS 7 Install OpenVAS 8<\/a><br \/><a href=\"https:\/\/myip.tw\/itsmw\/index.php?title=OpenVAS6\" target=\"_blank\" rel=\"noopener noreferrer\">OpenVAS6 &#8211; Itsmw<\/a><br \/><a href=\"http:\/\/www.myhome.net.tw\/2015_01\/p08.htm\" target=\"_blank\" rel=\"noopener noreferrer\">TWNIC 2015\u96fb\u5b50\u5831<\/a><br \/><a href=\"http:\/\/www.itzgeek.com\/how-tos\/linux\/centos-how-tos\/install-openvas-on-centos-7-rhel-7.html\" target=\"_blank\" rel=\"noopener noreferrer\">Install OpenVAS on CentOS 7 \/ RHEL 7<\/a><br \/><a href=\"http:\/\/myip.tw\/itsmw\/index.php?title=OpenVas\" target=\"_blank\" rel=\"noopener noreferrer\">OpenVas &#8211; Itsmw<\/a><\/p>\n<p>1) Disable SELINUX. <br \/>Edit <span style=\"color: #0000ff\">\/etc\/selinux\/config<\/span>, save and reboot <br \/># <span style=\"color: #ff0000\">sed -i &#8216;s\/SELINUX=enforcing\/SELINUX=disabled\/&#8217; \/etc\/selinux\/config<\/span> <br \/>2) Add required packages <br \/># <span style=\"color: #ff0000\">yum install wget bzip2 texlive net-tools\u00a0<\/span> <br \/>3) Add Atomicorp repo <br \/># <span style=\"color: #ff0000\">wget -q -O &#8211; <a class=\"postlink\" href=\"http:\/\/www.atomicorp.com\/installers\/atomic\"><span style=\"color: #ff0000\">http:\/\/www.atomicorp.com\/installers\/atomic<\/span> <\/a>| sh<\/span> <br \/><span style=\"color: #0000ff\">Do you agree to these terms? (yes\/no) [Default: yes]<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Configuring the [atomic] repo archive for this system<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Installing the Atomic GPG keys: OK<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Downloading atomic-release-1.0-21.el7.art.noarch.rpm: Preparing&#8230;\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 ################################# [100%]<\/span> <br \/><span style=\"color: #0000ff\">Updating \/ installing&#8230;<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0 1:atomic-release-1.0-21.el7.art\u00a0\u00a0\u00a0 ################################# [100%]<\/span> <br \/><span style=\"color: #0000ff\">OK<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Enable repo by default? (yes\/no) [Default: yes]:<\/span> <\/p>\n<p><span style=\"color: #0000ff\">The Atomic repo has now been installed and configured for your system<\/span> <br \/><span style=\"color: #0000ff\">The following channels are available:<\/span> <br \/><span style=\"color: #0000ff\">\u00a0 atomic\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 &#8211; [ACTIVATED] &#8211; contains the stable tree of ART packages<\/span> <br \/><span style=\"color: #0000ff\">\u00a0 atomic-testing\u00a0 &#8211; [DISABLED]\u00a0 &#8211; contains the testing tree of ART packages<\/span> <br \/><span style=\"color: #0000ff\">\u00a0 atomic-bleeding &#8211; [DISABLED]\u00a0 &#8211; contains the development tree of ART packages<\/span> <\/p>\n<p>[@more@]4) Install OpenVAS <br \/># <span style=\"color: #ff0000\">yum update<\/span> <br \/># <span style=\"color: #ff0000\">yum install openvas <\/span><span style=\"color: #ff0000\">alien<\/span> <\/p>\n<p>5) edit \/etc\/redis.conf. Add\/uncomment the following <br \/>unixsocket \/tmp\/redis.sock <br \/>unixsocketperm 700 <br \/># <span style=\"color: #ff0000\">cp \/etc\/redis.conf \/etc\/redis.conf.$(date +%F)<\/span> <br \/># <span style=\"color: #ff0000\">sed -i &#8216;s\/^# unixsocket\/unixsocket\/&#8217; \/etc\/redis.conf<\/span> <\/p>\n<p>6) Restart Redis <br \/># <span style=\"color: #ff0000\">systemctl enable redis &amp;&amp; systemctl restart redis<\/span> <br \/># <span style=\"color: #ff0000\">systemctl status redis<\/span> <br \/><span style=\"color: #0000ff\">\u25cf redis.service &#8211; Redis persistent key-value database<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0 Loaded: loaded (\/usr\/lib\/systemd\/system\/redis.service; enabled; vendor preset: disabled)<\/span> <br \/><span style=\"color: #0000ff\">\u00a0 Drop-In: \/etc\/systemd\/system\/redis.service.d<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 mqlimit.conf<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0 Active: active (<span style=\"color: #ff0000\">running<\/span>) since \u56db 2017-02-09 15:16:46 CST; 40min ago<\/span> <br \/><span style=\"color: #0000ff\">\u00a0Main PID: 1030 (redis-server)<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0 CGroup: \/system.slice\/redis.service<\/span> <br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 mq1030 \/usr\/bin\/redis-server 127.0.0.1:6379<\/span> <\/p>\n<p><span style=\"color: #0000ff\">\u00a02\u6708 09 15:16:46 localhost.localdomain systemd[1]: Started Redis persistent key-value database.<\/span> <br \/><span style=\"color: #0000ff\">\u00a02\u6708 09 15:16:46 localhost.localdomain systemd[1]: Starting Redis persistent key-value database&#8230;<\/span> <\/p>\n<p>7) openvas-setup <br \/>follow instructions. If rsync throws error, check that your network allows outgoing TCP 873 to internet <\/p>\n<p># <span style=\"color: #ff0000\">\/usr\/bin\/openvas-setup<\/span> <br \/><span style=\"color: #0000ff\">Openvas Setup, Version: 1.0<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Step 1: Update NVT, CERT, and SCAP data<\/span> <br \/><span style=\"color: #0000ff\">Please note this step could take some time.<\/span> <br \/><span style=\"color: #0000ff\">Once completed, this will be updated automatically every 24 hours<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Select download method<\/span> <br \/><span style=\"color: #0000ff\">* wget (NVT download only)<\/span> <br \/><span style=\"color: #0000ff\">* curl (NVT download only)<\/span> <br \/><span style=\"color: #0000ff\">* rsync<\/span> <\/p>\n<p><span style=\"color: #0000ff\">\u00a0 Note: If rsync requires a proxy, you should define that before this step.<\/span> <br \/><span style=\"color: #0000ff\">Downloader [Default: rsync]<\/span> <br \/><span style=\"color: #0000ff\">Updating NVTs&#8230;.<\/span> <br \/><span style=\"color: #0000ff\">[i] This script synchronizes an NVT collection with the &#8216;OpenVAS NVT Feed&#8217;.<\/span> <br \/><span style=\"color: #0000ff\">[i] The &#8216;OpenVAS NVT Feed&#8217; is provided by &#8216;The OpenVAS Project&#8217;.<\/span> <br \/><span style=\"color: #0000ff\">[i] Online information about this feed: &#8216;http:\/\/www.openvas.org\/openvas-nvt-feed.html&#8217;.<\/span> <br \/><span style=\"color: #0000ff\">[i] NVT dir: \/var\/lib\/openvas\/plugins<\/span> <br \/><span style=\"color: #0000ff\">[w] Could not determine feed version.<\/span> <br \/><span style=\"color: #0000ff\">[i] rsync is not recommended for the initial sync. Falling back on http.<\/span> <br \/><span style=\"color: #0000ff\">[i] Will use wget<\/span> <br \/><span style=\"color: #0000ff\">[i] Using GNU wget: \/usr\/bin\/wget<\/span> <br \/><span style=\"color: #0000ff\">[i] Configured NVT http feed: http:\/\/www.openvas.org\/openvas-nvt-feed-current.tar.bz2<\/span> <br \/><span style=\"color: #0000ff\">[i] Downloading to: \/tmp\/openvas-nvt-sync.Q53foiaQhA\/openvas-feed-2017-02-09-1275.tar.bz2<\/span> <br \/><span style=\"color: #0000ff\">&#8211;2017-02-09 15:26:23&#8211;\u00a0 http:\/\/www.openvas.org\/openvas-nvt-feed-current.tar.bz2<\/span> <br \/><span style=\"color: #0000ff\">\u6b63\u5728\u67e5\u627e\u4e3b\u6a5f www.openvas.org (www.openvas.org)&#8230; 5.9.98.186<\/span> <br \/><span style=\"color: #0000ff\">\u6b63\u5728\u9023\u63a5 www.openvas.org (www.openvas.org)|5.9.98.186|:80&#8230; \u9023\u4e0a\u4e86\u3002<\/span> <br \/><span style=\"color: #0000ff\">\u5df2\u9001\u51fa HTTP \u8981\u6c42\uff0c\u6b63\u5728\u7b49\u5019\u56de\u61c9&#8230; 200 OK<\/span> <br \/><span style=\"color: #0000ff\">\u9577\u5ea6: 28323931 (27M) [application\/x-bzip2]<\/span> <br \/><span style=\"color: #0000ff\">Saving to: \u2018\/tmp\/openvas-nvt-sync.Q53foiaQhA\/openvas-feed-2017-02-09-1275.tar.bz2\u2019<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Step 2: Configure GSAD<\/span> <br \/><span style=\"color: #0000ff\">The Greenbone Security Assistant is a Web Based front end<\/span> <br \/><span style=\"color: #0000ff\">for managing scans. By default it is configured to only allow<\/span> <br \/><span style=\"color: #0000ff\">connections from localhost.<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Allow connections from any IP? [Default: yes]<\/span> <br \/><span style=\"color: #0000ff\">Redirecting to \/bin\/systemctl restart\u00a0 gsad.service<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Step 3: Choose the GSAD admin users password.<\/span> <br \/><span style=\"color: #0000ff\">The admin user is used to configure accounts,<\/span> <br \/><span style=\"color: #0000ff\">Update NVT&#8217;s manually, and manage roles.<\/span> <\/p>\n<p><span style=\"color: #ff0000\">Enter administrator username [Default: admin] :<\/span> <br \/><span style=\"color: #ff0000\">Enter Administrator Password:<\/span> <br \/><span style=\"color: #ff0000\">Verify Administrator Password:<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Redirecting to \/bin\/systemctl start\u00a0 redis.service<\/span> <\/p>\n<p><span style=\"color: #0000ff\">Setup complete, you can now access GSAD at:<\/span> <br \/><span style=\"color: #0000ff\">\u00a0 https:\/\/&lt;IP&gt;:9392<\/span> <\/p>\n<p><span style=\"color: #ff0000\">Created symlink from \/etc\/systemd\/system\/multi-user.target.wants\/openvas-scanner.service to \/usr\/lib\/systemd\/system\/openvas-scanner.service.<\/span> <br \/><span style=\"color: #ff0000\">Created symlink from \/etc\/systemd\/system\/multi-user.target.wants\/openvas-manager.service to \/usr\/lib\/systemd\/system\/openvas-manager.service.<\/span> <br \/><span style=\"color: #ff0000\">Created symlink from \/etc\/systemd\/system\/multi-user.target.wants\/gsad.service to \/usr\/lib\/systemd\/system\/gsad.service.<\/span> <\/p>\n<p>8 ) To access OV-8 from network, either disable firewall or add exception for tcp 9392 <br \/># <span style=\"color: #ff0000\">firewall-cmd &#8211;permanent &#8211;zone=public &#8211;add-port=9392\/tcp<\/span> <br \/># <span style=\"color: #ff0000\">firewall-cmd &#8211;reload<\/span> <\/p>\n<p>Go to <a class=\"postlink\" href=\"https:\/\/%3CIP-ADDRESS%3E:9392\">https:\/\/&lt;IP-ADDRESS&gt;:9392<\/a> and login. <\/p>\n<p> <a id=\"res_3774352\" href=\"https:\/\/2blog.ilc.edu.tw\/wp-content\/uploads\/sites\/985\/25793\/25793-3774352.png\"> <img decoding=\"async\" src=\"https:\/\/2blog.ilc.edu.tw\/wp-content\/uploads\/sites\/985\/25793\/previews-med\/25793-3774352.png\" border=\"0\" alt=\"\" \/> <\/a> <\/p>\n<p> <a id=\"res_3774351\" href=\"https:\/\/2blog.ilc.edu.tw\/wp-content\/uploads\/sites\/985\/25793\/25793-3774351.png\"> <img decoding=\"async\" src=\"https:\/\/2blog.ilc.edu.tw\/wp-content\/uploads\/sites\/985\/25793\/previews-med\/25793-3774351.png\" border=\"0\" alt=\"\" \/> <\/a> <\/p>\n<p>[Optional] : Greenbone Security Assistant (GSAD) <br \/>For those who wants to install proper SSL cert. Download certificate and key file to your CentOS box. I place them inside \/etc\/openvas\/ssl. <br \/>Edit \/etc\/sysconfig\/gsad and modify the OPTIONS tag e.g. <\/p>\n<p>OPTIONS=&#8221;&#8211;ssl-certificate=\/etc\/openvas\/ssl\/openvas.crt &#8211;ssl-private-key=\/etc\/openvas\/ssl\/openvas.key&#8221; <\/p>\n<p>Restart gsad <br \/>systemctl restart gsad <\/p>\n<p>Those who wants stronger ciphers can will need to add gnutls-priorities, e.g. <br \/>OPTIONS=&#8221;&#8211;ssl-certificate=\/etc\/openvas\/ssl\/openvas.crt &#8211;ssl-private-key=\/etc\/openvas\/ssl\/openvas.key &#8211;gnutls-priorities=SECURE128:+SECURE192:-VERS-TLS-ALL:+VERS-TLS1.2&#8243; <\/p>\n<p>(See explanation at <a class=\"postlink\" href=\"http:\/\/gnutls.org\/manual\/html_node\/Priority-Strings.html\">http:\/\/gnutls.org\/manual\/html_node\/Priority-Strings.html<\/a>)<\/p>\n<p># <span style=\"color: #ff0000\">openvas-check-setup<\/span><br \/><span style=\"color: #0000ff\">openvas-check-setup 2.3.7<\/span><br \/><span style=\"color: #0000ff\">\u00a0 Test completeness and readiness of OpenVAS-8<\/span><br \/><span style=\"color: #0000ff\">\u00a0 (add &#8216;&#8211;v6&#8217; or &#8216;&#8211;v7&#8217; or &#8216;&#8211;v9&#8217;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0 if you want to check for another OpenVAS version)<\/span><\/p>\n<p><span style=\"color: #0000ff\">\u00a0 Please report us any non-detected problems and<\/span><br \/><span style=\"color: #0000ff\">\u00a0 help us to improve this check routine:<\/span><br \/><span style=\"color: #0000ff\">\u00a0 http:\/\/lists.wald.intevation.org\/mailman\/listinfo\/openvas-discuss<\/span><\/p>\n<p><span style=\"color: #0000ff\">\u00a0 Send us the log-file (\/tmp\/openvas-check-setup.log) to help analyze the problem.<\/span><\/p>\n<p><span style=\"color: #0000ff\">\u00a0 Use the parameter &#8211;server to skip checks for client tools<\/span><br \/><span style=\"color: #0000ff\">\u00a0 like GSD and OpenVAS-CLI.<\/span><\/p>\n<p><span style=\"color: #0000ff\">Step 1: Checking OpenVAS Scanner &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Scanner is present in version 5.0.7.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Scanner CA Certificate is present as \/var\/lib\/openvas\/CA\/cacert.pem.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: redis-server is present in version v=3.0.7.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: scanner (kb_location setting) is configured properly using the redis-server socket: \/tmp\/redis.sock<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: redis-server is running and listening on socket: \/tmp\/redis.sock.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: redis-server configuration is OK and redis-server is running.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: NVT collection in \/var\/lib\/openvas\/plugins contains 51765 NVTs.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 WARNING: Signature checking of NVTs is not enabled in OpenVAS Scanner.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 SUGGEST: Enable signature checking (see http:\/\/www.openvas.org\/trusted-nvts.html).<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: The NVT cache in \/var\/cache\/openvas contains 51765 files for 51765 NVTs.<\/span><br \/><span style=\"color: #0000ff\">Step 2: Checking OpenVAS Manager &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager is present in version 6.0.9.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager client certificate is present as \/var\/lib\/openvas\/CA\/clientcert.pem.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager database found in \/var\/lib\/openvas\/mgr\/tasks.db.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: Access rights for the OpenVAS Manager database are correct.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: sqlite3 found, extended checks of the OpenVAS Manager installation enabled.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager database is at revision 146.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager expects database at revision 146.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: Database schema is up to date.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager database contains information about 51765 NVTs.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: At least one user exists.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS SCAP database found in \/var\/lib\/openvas\/scap-data\/scap.db.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS CERT database found in \/var\/lib\/openvas\/cert-data\/cert.db.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: xsltproc found.<\/span><br \/><span style=\"color: #0000ff\">Step 3: Checking user configuration &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 WARNING: Your password policy is empty.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 SUGGEST: Edit the \/etc\/openvas\/pwpolicy.conf file to set a password policy.<\/span><br \/><span style=\"color: #0000ff\">Step 4: Checking Greenbone Security Assistant (GSA) &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: Greenbone Security Assistant is present in version 6.0.11.<\/span><br \/><span style=\"color: #0000ff\">Step 5: Checking OpenVAS CLI &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS CLI version 1.4.5.<\/span><br \/><span style=\"color: #0000ff\">Step 6: Checking Greenbone Security Desktop (GSD) &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 SKIP: Skipping check for Greenbone Security Desktop.<\/span><br \/><span style=\"color: #0000ff\">Step 7: Checking if OpenVAS services are up and running &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: netstat found, extended checks of the OpenVAS services enabled.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Scanner is running and listening on all interfaces.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Scanner is listening on port 9391, which is the default port.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager is running and listening on all interfaces.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: OpenVAS Manager is listening on port 9390, which is the default port.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: Greenbone Security Assistant is listening on port 9392, which is the default port.<\/span><br \/><span style=\"color: #0000ff\">Step 8: Checking nmap installation &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 WARNING: Your version of nmap is not fully supported: 6.47<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 SUGGEST: You should install nmap 5.51 if you plan to use the nmap NSE NVTs.<\/span><br \/><span style=\"color: #0000ff\">Step 10: Checking presence of optional tools &#8230;<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: pdflatex found.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: PDF generation successful. The PDF report format is likely to work.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: ssh-keygen found, LSC credential generation for GNU\/Linux targets is likely to work.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: rpm found, LSC credential package generation for RPM based targets is likely to work.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 WARNING: Could not find alien binary, LSC credential package generation for DEB based targets will not work.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 SUGGEST: Install alien.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: nsis found, LSC credential package generation for Microsoft Windows targets is likely to work.<\/span><br \/><span style=\"color: #0000ff\">\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0\u00a0 OK: SELinux is disabled.<\/span><\/p>\n<p><span style=\"color: #0000ff\">It seems like your OpenVAS-8 installation is OK.<\/span><\/p>\n<p><span style=\"color: #0000ff\">If you think it is not OK, please report your observation<\/span><br \/><span style=\"color: #0000ff\">and help us to improve this check routine:<\/span><br \/><span style=\"color: #0000ff\">http:\/\/lists.wald.intevation.org\/mailman\/listinfo\/openvas-discuss<\/span><br \/><span style=\"color: #0000ff\">Please attach the log-file (\/tmp\/openvas-check-setup.log) to help us analyze the problem.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u5b98\u65b9\u7db2\u7ad9\uff1a http:\/\/www.openvas.org\/index.html \u53c3\u8003\u7db2\u7ad9\uff1a http:\/\/fo &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/2blog.ilc.edu.tw\/25793\/2017\/04\/04\/%e5%9c%a8-centos-7-x-%e4%b8%8a%e5%ae%89%e8%a3%9d-openvas\/\" class=\"more-link\">\u95b1\u8b80\u5168\u6587<span class=\"screen-reader-text\">\u3008\u5728 CentOS 7.x \u4e0a\u5b89\u88dd OpenVAS\u3009<\/span><\/a><\/p>\n","protected":false},"author":55,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[117,193],"tags":[],"class_list":["post-19491","post","type-post","status-publish","format-standard","hentry","category-c-78462","category-c-105012"],"meta_key":{"_pingme":["1"],"_encloseme":["1"],"lt_post_id":["685478"]},"_links":{"self":[{"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/posts\/19491"}],"collection":[{"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/users\/55"}],"replies":[{"embeddable":true,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/comments?post=19491"}],"version-history":[{"count":1,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/posts\/19491\/revisions"}],"predecessor-version":[{"id":21008,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/posts\/19491\/revisions\/21008"}],"wp:attachment":[{"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/media?parent=19491"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/categories?post=19491"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/2blog.ilc.edu.tw\/25793\/wp-json\/wp\/v2\/tags?post=19491"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}