nerdexam
GIAC

GPEN · Question #464

A client has asked for a vulnerability scan on an internal network that does not have internet access. The rules of engagement prohibits any outside connection for the Nessus scanning machine. The…

The correct answer is D. Download the updates on an alternative machine and manually load on scanningmachine. When the scanning machine is prohibited from making external connections, plugin updates can be obtained on a separate permitted machine and then transferred manually, keeping the scanner fully offline.

Vulnerability Discovery & Scanning

Question

A client has asked for a vulnerability scan on an internal network that does not have internet access. The rules of engagement prohibits any outside connection for the Nessus scanning machine. The customer has asked you to scan for a new critical vulnerability, which was released after the testing started, winch of the following methods of updating the Nessus plugins does not violate the rules of engagement?

Options

  • AConnect the scanning machine via wireless bridge and download the updateddirectly
  • BChange the routing and connect through an alternative gateway
  • CProceed with the test and note the limitation of updating the plugins
  • DDownload the updates on an alternative machine and manually load on scanningmachine

How the community answered

(27 responses)
  • A
    11% (3)
  • B
    4% (1)
  • C
    4% (1)
  • D
    81% (22)

Why each option

When the scanning machine is prohibited from making external connections, plugin updates can be obtained on a separate permitted machine and then transferred manually, keeping the scanner fully offline.

AConnect the scanning machine via wireless bridge and download the updateddirectly

Connecting the scanning machine through a wireless bridge establishes an outside connection from the scanning machine itself, which directly violates the stated rules of engagement.

BChange the routing and connect through an alternative gateway

Changing routing to use an alternative gateway still routes the scanning machine's traffic to an external network, which is explicitly prohibited by the rules of engagement.

CProceed with the test and note the limitation of updating the plugins

Proceeding without the updated plugins leaves the critical vulnerability untested, producing an incomplete assessment that does not meet the client's explicit request to scan for that vulnerability.

DDownload the updates on an alternative machine and manually load on scanningmachineCorrect

Downloading the updated Nessus plugins on a separate machine that is authorized to access the internet, then transferring the update files to the scanning machine via removable media or an internal file transfer, keeps the scanning machine isolated from any outside connection. This method satisfies both the operational requirement for current plugins and the contractual rules of engagement that prohibit the scanner itself from connecting externally.

Concept tested: Nessus offline plugin update within rules of engagement

Source: https://docs.tenable.com/nessus/Content/ManagePlugins.htm

Topics

#Nessus#plugin updates#rules of engagement#offline scanning

Community Discussion

No community discussion yet for this question.

Full GPEN Practice