LX0-104 · Question #373
What is the purpose of the Safe Checks option in a Nessus configuration?
The correct answer is B. To prevent the use of plugins which may have a negative effect on the network being scanned. The Safe Checks option in Nessus prevents the execution of plugins that could potentially disrupt the target network or systems during a scan. It ensures that the scan remains non-intrusive by disabling potentially harmful tests.
Question
Options
- AEnables secure scanning over an encrypted tunnel.
- BTo prevent the use of plugins which may have a negative effect on the network being scanned
- CTo prevent the use of plugins which may leave the Nessus server vulnerable during the scanning process
- DWhen validating a Nessus configuration file, the nessusd process will not be interrupted.
How the community answered
(26 responses)- B92% (24)
- C4% (1)
- D4% (1)
Why each option
The Safe Checks option in Nessus prevents the execution of plugins that could potentially disrupt the target network or systems during a scan. It ensures that the scan remains non-intrusive by disabling potentially harmful tests.
Safe Checks do not relate to encryption or secure tunnel scanning; that's typically handled by transport-level security or agent-based scanning.
Safe Checks in Nessus are designed to prevent the scanner from running plugins that are known to potentially crash services or operating systems, ensuring the integrity and availability of the target network. This option is crucial for production environments where service disruption is unacceptable, as it prioritizes safety over comprehensive vulnerability discovery.
Safe Checks protect the target network from negative effects, not the Nessus server itself from becoming vulnerable during a scan.
This option does not relate to configuration file validation or nessusd process interruption; it's about plugin execution behavior.
Concept tested: Nessus Safe Checks functionality
Source: https://docs.tenable.com/nessus/Content/ScanPolicySettings.htm
Topics
Community Discussion
No community discussion yet for this question.