Page 1 of 1

PCI Scanner Whitelist IP Range

Posted: Mon Jun 01, 2020 3:33 pm
by Garcia65
Hi I need to allow the PCI scanner access to run the scan. I know how to add a single IP address but the company is requesting a range of IPs be added to the HIDS or OSSEC not even sure what is blocking it, see below for the ranges. How would I go about this? TIA for any help! PS. Is there a command that can be run to tell me if that IP range is "working/allowed"


64.39.96.0/20
154.59.121.64/27
154.59.121.128/27

Re: PCI Scanner Whitelist IP Range

Posted: Mon Jun 01, 2020 5:22 pm
by mikeshinn
You can whitelist a CIDR or IP by running this command as root:

asl -w 1.2.3.0/24

And on v6:

awp -w 1.2.3.0/24