Retina is used by
security administrators to find and correct those same exploits. Among the
commercial vulnerability scanners available, Retina is one of the best.
Vulnerability Scanning 397
Lab 64: Target Assessment
Assessment of Target Security: X-Scan
Prerequisites: None
Countermeasures: Secure ACLs, Bastion computer, host-based firewalls
Description: The X-Scan application is designed to perform a security
assessment of the target. X-Scan scans ports, traceroutes, performs
audits with numerous canned scripts, generates precise reports, and
provides recommended solutions for security concerns and much
more. X-Scan is basically the free equivalent of Retina (see Lab 63).
Procedure: Start the application, set the parameters, and execute.
Click on the xscan_gui icon to start the X-Scan application.
The X-Scan application starts. Configure the X-Scan application by clicking
on Config and then clicking on Scan Parameter.
398 Practical Hacking Techniques and Countermeasures
Under the Basic config tab, enter the target IP Address.
Change the default Skip host when failed to ping to Scan always.
Under the Port tab, enter the ports in Scan port and Scan mode to scan
on the target.
Vulnerability Scanning 399
The remaining information may be left at default values unless this is an
SNMP assessment, which is configured on the Snmp tab. Click OK.
To begin the assessment click the start button or click on File and then
click Start.
Pages:
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153