I ran
nessus-mkcert-client and I kept getting the same question over and
over. "Do you want to register the users in the nessus
server as soon as you create their certificates ?" I answered 'yes' I
tried 'no' but the same question was
asked again and again. What could be
wrong?
Thanks
-----Original Message-----
From: Carl Houseman [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, October 23, 2002 2:03 PM
To: [EMAIL PROTECTED]
Subject: RE: new to nessus please helpCreating client certificates is discussed in the FAQ at nessus.org.You will have to keep the client certificate secure. It is not IP-specific.-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Ninan, Anil
Sent: Wednesday, October 23, 2002 1:14 PM
To: '[EMAIL PROTECTED]'
Subject: new to nessus please helpI have installed nessusd on a Linux machine and NessusWX on windows2000. I was able to authenticate using user id and password and was able to scan the network successfully. Since users can give the userid and password to others what will be the best way to authenticate? Client certificate?. Where can I find the steps to create and activate a client certificate? I created a certificate using nessus-mkcert but how do I limit it to a particular client ip address? Do I just copy the certificate created by nessus-mkcert to the client machine for NessusWX to use?
Thanks for the help
