Vulnerability Assessment begins with discovery - of network assets. Asset Discovery provides an inventory of assets which you desire to be scanned. It involves addition of the resources present in your enterprise (the servers, workstations, laptops, routers, switches and others) into the ScanFi enterprise setup for vulnerability assessment. Asset Discovery provides details such as IP Address, DNS Name, Operating System of all the network resources that was discovered.
ScanFi provides you with a variety of ways to discover your enterprise resources by either providing :
Select the 'Discovery Options' you would prefer to use, based on your network configuration, for faster discovery of network assets. By default , all options are selected for better results.
[0R]
The link Show Discovered Assets : Latest will list the most recently discovered assets.
The link Show Discovered Assets : Complete will list the entire list of assets that where discovered using ScanFi.
You can delete the discovered assets using the 'Delete' link. Deleting an asset will result in deletion of its scan result , provided the scanning for the 'to be deleted' asset has been already done.
ScanFi provides you with many options, which can be used to discover your enterprise assets.
Nmap is a network port scanner and service detector offering stealth SYN scan, ping sweep, FTP bounce, UDP scan and operating system fingerprinting.
For effective port scanning and OS detection, you need to
separately install Nmap 3.55 or above. You can download the latest version of Nmap at
http://www.insecure.org/nmap/nmap_download.html
For Linux systems, after Nmap installation if you want ScanFi to use Nmap OS Detection, do any one of the following:
SNMP based OS detection becomes effective only when the 'community' string set in ScanFi system match with the target machines. Refer 'Discovery and Scan Preferences' section for configuring SNMP Settings in ScanFi.
By default, ScanFi also uses some standard OS detection procedures such as using Telnet and smbclient (for Linux).
After asset discovery is completed you can group the discovered assets based on asset type (such as servers, workstations, laptops, routers, switches and others) , operating systems (like windows, linux or cisco ios ...), or some custom grouping based on your discretion.
New asset groups can be created using any of the following options :
New Group can also be created from the Groups tab. Refer 'Create a new asset group'.
Assets can be added to the groups using any of the following options :
The discovered assets can be scanned from the Asset Discovery page itself using the 'Scan' link after selecting the desired IP Address / DNS Name. You can also perform scans using any of the many provisions like : Quick Scan, New Scan, Schedule Scan . Refer 'Scans' for more details.
Copyright © 2005, AdventNet Inc. All Rights Reserved.