Firewall Wizards mailing list archives

Re: commercial va


From: "Andy Cuff [Talisker]" <talisker () networkintrusion co uk>
Date: Wed, 16 Apr 2003 18:55:21 +0100

Hi Simon
I did hear that ISS Internet Scanner doesn't scan where the host is
unresponsive to pings, I haven't used the tool to verify this, but I'm sure
I'll be flamed if it's not correct.

Cybercop is on it's last legs and whilst it's not end of lifed until 31 Dec
04 it hasn't been supported as it once was, this is a shame and a poor move
by NAI as it was a good tool, though a little prone to false positives.

Eeye have Retina which also has a distributed scanning function, it's a nice
tool that is pretty fast though their annual maintenance was pretty high
last time I used it.

I have been using GFI's LANguard for the last few months and I quite like
it, nice presentation though perhaps not as versatile as some of the more
expensive scanners.  It also has a nice Windows update installation feature.

You have to go a long way to beat Nessus and whilst open source and not
commercial as you specified is now being offered by Tenable as a commercial
appliance, best of all it does distributed scans and correlates data with
certain IDS.  I hope this will take a big chunk of the market in the next 12
months forcing the other commercial entities to reduce their exorbitant
prices -- oops nearly got on a soap box.

Salient details on Vulnerability Scanners can be found here
http://www.networkintrusion.co.uk/N_scan.htm

and on distributed scanners here http://www.networkintrusion.co.uk/dist.htm

The network scanners page is a little out of date so if you come across any
more please let me know

take care
-andy
Taliskers Network Security Tools
http://www.networkintrusion.co.uk

Taliskers Network Security Tools
http://www.networkintrusion.co.uk
----- Original Message -----
From: <SimonChan () lifeisgreat com sg>
To: <firewall-wizards () honor icsalabs com>
Sent: Wednesday, April 16, 2003 4:00 AM
Subject: [fw-wiz] commercial va



Hi,

i'm considering on getting some form of VA product.

* top of my mind is  ISS  scanner
* NAI/cybercop scanner seems to be dated

Is there any "good" commercial va product out there ?
Also appreciate any one who has used ISS to feed back as well.


tks.


"Security is a balance between protectiveness and usability.
  Security is a Journey, not a Destination"

--------------------------------------------------------------------------
---

"My statements in this message are personal opinions
which may have no basis whatsoever in fact."



--------------------------------------------------------------------------
-------

CONFIDENTIALITY CAUTION :
The email is only for the use of the person or entity to whom it is
addressed and contains information that is privileged and confidential. If
you, the reader of this email are not the intended recipient, any
distribution, copying or dissemination of this email is strictly
prohibited. If you have received this email in error, please contact the
sender immediately by return email and delete this email. Thank you.
Please
visit our website at http://www.lifeisgreat.com.sg.

--------------------------------------------------------------------------
-------


_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: