OpenVAS with multiple Scanners
Posted: Wed Jun 14, 2017 8:45 am
Hi everyone,
right now I'm trying to set up an openvas infrastructure with a Manager Node (which would be openvas-manager with gsad, however in this case for testing purposes I installed the whole openvas package via atomic repo) and several scanner nodes in different subnets.
My understanding was that I could use the web interface of gsad to add scanners. As the openvas-scanner no longer listens on a tcp socket I couldn't really figure out which port to use now. It used to be 9391 I guess, but now the only port anything openvas related listens to is the port 9392.
If I add a scanner using port 9392 the connection can be established (therefore also the certificates seem to be set up correctly). I can even start a scan but it wouldn't leave the "Requested" state. On the beginning of the scan I can see some packets going to and from the scanner node to the manager node but then nothing happens. No communication from/to the manager and no scanning activity. If I start a scan manually on the scanner node everything seems to be fine. So my guess is that connection to port 9392 for remote connect from the scanner node might be the wrong approach. Until now I couldn't find any documentation which would help me with the current version of openvas.
Anyone has a running setup like this and willing to share a fix for this?
thanks for your help!
right now I'm trying to set up an openvas infrastructure with a Manager Node (which would be openvas-manager with gsad, however in this case for testing purposes I installed the whole openvas package via atomic repo) and several scanner nodes in different subnets.
My understanding was that I could use the web interface of gsad to add scanners. As the openvas-scanner no longer listens on a tcp socket I couldn't really figure out which port to use now. It used to be 9391 I guess, but now the only port anything openvas related listens to is the port 9392.
If I add a scanner using port 9392 the connection can be established (therefore also the certificates seem to be set up correctly). I can even start a scan but it wouldn't leave the "Requested" state. On the beginning of the scan I can see some packets going to and from the scanner node to the manager node but then nothing happens. No communication from/to the manager and no scanning activity. If I start a scan manually on the scanner node everything seems to be fine. So my guess is that connection to port 9392 for remote connect from the scanner node might be the wrong approach. Until now I couldn't find any documentation which would help me with the current version of openvas.
Anyone has a running setup like this and willing to share a fix for this?
thanks for your help!