Date: Thu, 14 Jul 2005 09:27:47 -0700 (PDT)
   From: hic sonni <[EMAIL PROTECTED]>
   X-Spam-Level: 

   Hi,
   I’ll try it, after 24 hours my scan is in 10.12.93.0
   range,

   We’ve a big Wan that contain several LAN: 10.10.X, 
   10.11.X  10.12.X, 10.10X , 10.13.X , 10.14.X
   …..10.20.X , it has several thousands of machines
   including several hundreds of servers, My goal is to
   make a network assessment first, and then run
   periodically scan against our servers,

   Any suggestion? 

We are planning to scan a class B network with an estimated 17,000 hosts.
I plan to _only_ use externally generated lists of IP addresses.  The major
source will be from ARP tables that we collect from the routers.  Basically,
if it's been seen on a network device in the last 2 weeks it gets scanned.
We use our own software for this but there are a few packages that provide
similar functionality (if you've got access to the network devices!)

I'll probably have to split the list to do a certain amount that we think will
be possible to scan in a working day (and perhaps be clever about finding
which machines seem to be on all night).

This will also allow us to manage addresses so that we can easily exclude
hosts that shouldn't be scanned for any reason.

I have tested this on a smaller scale but full production is a way off yet.

Eddie
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to