Vulnerability Scanner Set-Up and Configuration Part 4 Lab

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
10 hours 25 minutes
Difficulty
Beginner
Video Transcription
00:00
>> Hey everyone, welcome back to the course.
00:00
In the last lab video,
00:00
what we did is we went ahead and logged into Kali Linux.
00:00
We ran the nano command, create a file,
00:00
put some IP addresses in that file.
00:00
We then save the file.
00:00
We run a command to launch OpenVAS.
00:00
Basically pseudo openVos stash start.
00:00
Then from there we came to the green bone page.
00:00
And again, if it didn't launch for you,
00:00
make sure you just launch Firefox and go to
00:00
the URL that's provided in the step-by-step guide,
00:00
as well as the instructions on
00:00
the right side of the screen here.
00:00
Once we logged into green bone,
00:00
That's where we stopped the last video
00:00
and now we're going to pick things back up
00:00
with setting up some of
00:00
the configuration as well as
00:00
actually running our OpenVAS scan.
00:00
Let's go ahead and do that now
00:00
the first thing we're going to do is hover
00:00
our mouse over topic configuration
00:00
and then select ''Targets''.
00:00
Once we get to the target screen,
00:00
we're going to select this little icon
00:00
that's blue with a little star
00:00
in the center on the left side
00:00
here. Let's go ahead and select that.
00:00
That's how we can select our new target for the name,
00:00
I'm going to name this as corporate devices.
00:00
Honestly, if you're doing this lab,
00:00
you can name it whatever you choose to.
00:00
But for simplicity's sake,
00:00
I'm going to name it corporate devices.
00:00
In the common area I'm going to put these devices,
00:00
these are devices on
00:00
the network just so I can leave a comment and like,
00:00
wait, why am I scanning this?
00:00
What is this stuff I'm scanning here?
00:00
Again, you can find all this in a step-by-step guide.
00:00
The next thing we're going to do
00:00
is under the host section,
00:00
I'm going to select the from
00:00
file option and basically
00:00
browse to the file that I had created.
00:00
You see here it's selected as manual.
00:00
I'm going to select the "File" option and
00:00
then just browse to my file that I created before.
00:00
All you have to do, your
00:00
should save to the same location,
00:00
at least it should have just go to
00:00
the student folder on the left side and find
00:00
the scanning target list option and
00:00
then just select the ''Open'' button here.
00:00
Alright, so that's basically going to force it to use
00:00
that listing of IP addresses that we had set before.
00:00
Then finally, we're just going to click this
00:00
''Create'' button at the bottom.
00:00
Can take a few seconds or so to create that for us.
00:00
Next one we're going to do is
00:00
we're going to go back up at the top.
00:00
We're going to go to scans this time.
00:00
We're going to select the "Task" option.
00:00
So that second option down there,
00:00
similar as what we had done before.
00:00
Let's just X out of that little pop-up you get there.
00:00
We're going to use this same icon
00:00
here to select a new task.
00:00
Now we're going to name our scan.
00:00
We're going to be running
00:00
a scan now we're just going to name it.
00:00
I'm going to call this one corporate scan.
00:00
Then in the comments section here,
00:00
I'm just going to put scanning corporate assets.
00:00
Down here under the scan config option,
00:00
just make sure it's selected a full and fast.
00:00
It should be by default, but that's what we
00:00
want to keep it as.
00:00
Then also the scan targets.
00:00
Again by default it
00:00
should select the appropriate one but makes sure
00:00
it's corporate devices or whatever else you
00:00
had named your targets.
00:00
Then we'll select the "Create" button.
00:00
You'll notice that we've got our scan created here.
00:00
All we have to do to actually run
00:00
it and select this little ''Play'' button.
00:00
So this little green button
00:00
with a white arrow in the center,
00:00
that's going to go ahead and start the scan for us.
00:00
Alright, so once the scan is complete and again,
00:00
it might take a few minutes to
00:00
run about five minutes or so.
00:00
You'll see a list of the vulnerabilities to
00:00
look at these a little further or just select it.
00:00
It's going to give you some basic information
00:00
about that particular vulnerability.
00:00
What did it actually find?
00:00
What does this mean? Then you can just go Google
00:00
to learn a little more about
00:00
those particular vulnerabilities.
00:00
In this video, we just went ahead and
00:00
wrapped up our lab on using OpenVAS.
00:00
We just ran a simple scan after
00:00
we set some configurations on the particular file,
00:00
we wanted to scan the IP addresses
00:00
as well as naming our scan.
00:00
In the next set of labs,
00:00
what you're going to notice, as I mentioned before,
00:00
is that I just gave a high-level overview of what the lab
00:00
is about and you'll need to
00:00
walk through those labs on your own.
00:00
Again, there's a step-by-step guide
00:00
for those labs in the resource section of the course,
00:00
as well as there are instructions on the right side,
00:00
very important for those labs as well.
00:00
Make sure that you check those boxes on the right side of
00:00
the lab to actually get full credit for the lab.
Up Next