From Merlon at gmx.net Tue Jun 2 11:43:02 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Tue, 02 Jun 2009 11:43:02 +0200 Subject: [Openvas-plugins] Final Release of Plugins Patch Message-ID: <20090602094302.38800@gmx.net> Hello Community, I finished my work on this script. Now it works totally the way it should. Do not ask why there are code blocks found looking similar. Due to misbehavior of patch part 3 it is necessary to have a little workaround at end. Feel free to test it. To apply any you have to select the parts via flags before running it Chears Markus Schr?der -- GMX FreeDSL Komplettanschluss mit DSL 6.000 Flatrate und Telefonanschluss nur 17,95 Euro/mtl.!* http://portal.gmx.net/de/go/dsl02 -------------- next part -------------- A non-text attachment was scrubbed... Name: patch_plugins Type: application/octet-stream Size: 17605 bytes Desc: not available Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090602/d8435d4f/patch_plugins.obj From Merlon at gmx.net Tue Jun 2 13:28:25 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Tue, 02 Jun 2009 13:28:25 +0200 Subject: [Openvas-plugins] Patch for Final Release Patch Message-ID: <20090602112825.246910@gmx.net> Due to the brilliant script writers in past we had a bug fix at my script on line 310! Please replace line 310 with following code or modify right place: cnt_ff=`cat $i | grep "family" | grep -v "#" | grep -c "english"` Thanx and have fun Markus Schr?der -- GMX FreeDSL Komplettanschluss mit DSL 6.000 Flatrate und Telefonanschluss nur 17,95 Euro/mtl.!* http://portal.gmx.net/de/go/dsl02 From Merlon at gmx.net Wed Jun 3 08:28:07 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Wed, 03 Jun 2009 08:28:07 +0200 Subject: [Openvas-plugins] Update Final Release Message-ID: <20090603062807.71290@gmx.net> Due to magical behavior of missing script_fields after apply last part, there are some flags added to seperate execution. If you find any bugs let me know. Cheers Markus Schr?der -- GRATIS f?r alle GMX-Mitglieder: Die maxdome Movie-FLAT! Jetzt freischalten unter http://portal.gmx.net/de/go/maxdome01 -------------- next part -------------- A non-text attachment was scrubbed... Name: patch_plugins Type: application/octet-stream Size: 18128 bytes Desc: not available Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090603/4c402190/patch_plugins.obj From Merlon at gmx.net Thu Jun 4 10:33:08 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Thu, 04 Jun 2009 10:33:08 +0200 Subject: [Openvas-plugins] Final Update for Patch Message-ID: <20090604083308.25590@gmx.net> Hello, I find some coding style in script_fields( "....") <- like this. This update removes the space to script_fields("...."). Hope it will be the last case to solve. Greets Markus Schr?der -- GRATIS f?r alle GMX-Mitglieder: Die maxdome Movie-FLAT! Jetzt freischalten unter http://portal.gmx.net/de/go/maxdome01 -------------- next part -------------- A non-text attachment was scrubbed... Name: patch_plugins Type: application/octet-stream Size: 18412 bytes Desc: not available Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090604/fae1338f/patch_plugins.obj From Merlon at gmx.net Wed Jun 10 13:07:00 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Wed, 10 Jun 2009 13:07:00 +0200 Subject: [Openvas-plugins] cleanup Patch Final Release Update Message-ID: <20090610110700.78250@gmx.net> Hello, due to some issues needed a fix to make this patch a full run flagged patch. So no unwanted behavior of any parts now by running them step by step. Regards Markus Schr?der -- GMX FreeDSL Komplettanschluss mit DSL 6.000 Flatrate und Telefonanschluss f?r nur 17,95 Euro/mtl.!* http://portal.gmx.net/de/go/dsl02 -------------- next part -------------- A non-text attachment was scrubbed... Name: patch_plugins Type: application/octet-stream Size: 18659 bytes Desc: not available Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090610/80fcdf86/patch_plugins.obj From Merlon at gmx.net Thu Jun 11 13:23:06 2009 From: Merlon at gmx.net (Merlon@gmx.net) Date: Thu, 11 Jun 2009 13:23:06 +0200 Subject: [Openvas-plugins] new release Final Patch Message-ID: <20090611112306.123800@gmx.net> Hello again, hope this fixes the last things i found. There was dependenciess due to the change from dependencie->dependencies. So those entries having a dependenciess will correct now. Regards Markus Schr?der PS: Its no spam -- GMX FreeDSL Komplettanschluss mit DSL 6.000 Flatrate und Telefonanschluss f?r nur 17,95 Euro/mtl.!* http://portal.gmx.net/de/go/dsl02 -------------- next part -------------- A non-text attachment was scrubbed... Name: patch_plugins Type: application/octet-stream Size: 19389 bytes Desc: not available Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090611/432aec8e/patch_plugins.obj From goran.licina at lss.hr Tue Jun 16 13:49:41 2009 From: goran.licina at lss.hr (=?ISO-8859-2?Q?Goran_Li=E8ina?=) Date: Tue, 16 Jun 2009 13:49:41 +0200 Subject: [Openvas-plugins] Working on missing dependencies References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> Message-ID: <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> Hello! Plugins are finished (in attachment). Please review them and let us know if everything is done right. Best Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Li?ina Sent: Tuesday, May 26, 2009 1:09 PM To: Openvas-plugins at wald.intevation.org Subject: [Openvas-plugins] Working on missing dependencies Hi, we would like to start working on the following plugins: www_too_long_url.nasl cisco_ids_manager_detect.nasl rsync_modules.nasl Please, notify us if someone else is working on these. Also, is it possible to maintain centralized list of missing dependencies somewhere (perhaps on SVN)? Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb -------------- next part -------------- An HTML attachment was scrubbed... URL: http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090616/dfbfa684/attachment.html -------------- next part -------------- A non-text attachment was scrubbed... Name: cisco_ids_manager_detect.nasl Type: application/octet-stream Size: 2311 bytes Desc: cisco_ids_manager_detect.nasl Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090616/dfbfa684/cisco_ids_manager_detect.obj -------------- next part -------------- A non-text attachment was scrubbed... Name: rsync_modules.nasl Type: application/octet-stream Size: 3771 bytes Desc: rsync_modules.nasl Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090616/dfbfa684/rsync_modules.obj -------------- next part -------------- A non-text attachment was scrubbed... Name: www_too_long_url.nasl Type: application/octet-stream Size: 2274 bytes Desc: www_too_long_url.nasl Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090616/dfbfa684/www_too_long_url.obj From bchandra at secpod.com Tue Jun 16 19:32:41 2009 From: bchandra at secpod.com (Chandrashekhar B) Date: Tue, 16 Jun 2009 23:02:41 +0530 Subject: [Openvas-plugins] Working on missing dependencies In-Reply-To: <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> Message-ID: <143B971455FF4C538F1322E34769DE9C@bchandra> Hello Goran, Thanks for your submission. I'll review these scripts tomorrow and get back to you if there's anything. Thanks, Chandra. ________________________________________ From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Licina Sent: Tuesday, June 16, 2009 5:20 PM To: Openvas-plugins at wald.intevation.org Subject: Re: [Openvas-plugins] Working on missing dependencies Hello! Plugins are finished (in attachment). Please review them and let us know if everything is done right. Best Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Li?ina Sent: Tuesday, May 26, 2009 1:09 PM To: Openvas-plugins at wald.intevation.org Subject: [Openvas-plugins] Working on missing dependencies Hi, we would like to start working on the following plugins: www_too_long_url.nasl cisco_ids_manager_detect.nasl rsync_modules.nasl Please, notify us if someone else is working on these. Also, is it possible to maintain centralized list of missing dependencies somewhere (perhaps on SVN)? Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From bchandra at secpod.com Wed Jun 17 06:19:23 2009 From: bchandra at secpod.com (Chandrashekhar B) Date: Wed, 17 Jun 2009 09:49:23 +0530 Subject: [Openvas-plugins] Working on missing dependencies In-Reply-To: <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> Message-ID: <3511770E03634129AC28C6DA18FA9434@bchandra> Hello Goran, Few comments I had, 1. cisco_ids_manager.nasl - Currently we are following 1.0 format for script_version - A separate KB item for "Cisco IDS manager" will be good to have apart from embedded KB - The message in log_message, "port" variable can be used instead of 443 - All detection scripts, we consider "Risk factor" to "Informational" - Since the script is reporting the "desc" in security_note after the Cisco IDS Manager is detected, the description should be changed from, "Detects if CISCO IDS Manager is running..." to "CISCO IDS Manager is running..." 2. rsync_modules - "Risk factor" can be "Informational" - Version to 1.0 format 3. www_too_long_url.nasl - Version to 1.0 format - When http_send_recv(port:port, data:crap(65501)); is used, the "data" contains the entire HTTP request content and not the URL alone. If we are testing only for URL to be long, this can be used, request = string("/", crap(65535)); request = http_get(item:request, port:port); Thanks, Chandra. ________________________________________ From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Licina Sent: Tuesday, June 16, 2009 5:20 PM To: Openvas-plugins at wald.intevation.org Subject: Re: [Openvas-plugins] Working on missing dependencies Hello! Plugins are finished (in attachment). Please review them and let us know if everything is done right. Best Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Li?ina Sent: Tuesday, May 26, 2009 1:09 PM To: Openvas-plugins at wald.intevation.org Subject: [Openvas-plugins] Working on missing dependencies Hi, we would like to start working on the following plugins: www_too_long_url.nasl cisco_ids_manager_detect.nasl rsync_modules.nasl Please, notify us if someone else is working on these. Also, is it possible to maintain centralized list of missing dependencies somewhere (perhaps on SVN)? Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From goran.licina at lss.hr Fri Jun 19 20:41:48 2009 From: goran.licina at lss.hr (=?ISO-8859-2?Q?Goran_Li=E8ina?=) Date: Fri, 19 Jun 2009 20:41:48 +0200 Subject: [Openvas-plugins] Working on missing dependencies References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> <3511770E03634129AC28C6DA18FA9434@bchandra> Message-ID: <8A02A3DF683DEE42BE73187F4CA4444C086416@vlasta.lss-net.lss.hr> Hi Chandra! > -----Original Message----- > From: Chandrashekhar B [mailto:bchandra at secpod.com] > Sent: Wednesday, June 17, 2009 6:19 AM > To: Goran Li?ina; Openvas-plugins at wald.intevation.org > Subject: RE: [Openvas-plugins] Working on missing dependencies > > Hello Goran, > > Few comments I had, > > 1. cisco_ids_manager.nasl > - Currently we are following 1.0 format for script_version > - A separate KB item for "Cisco IDS manager" will be good to have apart > from > > embedded KB You mean something like Services/www/cisco_ids_manager? Is KB structure (data that plugins write in it) anywhere documented? Or searching existing plugins is the only way to see how things are written there? Thanks, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From bchandra at secpod.com Sat Jun 20 07:24:23 2009 From: bchandra at secpod.com (Chandrashekhar B) Date: Sat, 20 Jun 2009 10:54:23 +0530 Subject: [Openvas-plugins] Working on missing dependencies In-Reply-To: <8A02A3DF683DEE42BE73187F4CA4444C086416@vlasta.lss-net.lss.hr> References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> <3511770E03634129AC28C6DA18FA9434@bchandra> <8A02A3DF683DEE42BE73187F4CA4444C086416@vlasta.lss-net.lss.hr> Message-ID: <08731C5547714E108FF9B8843B84D553@bchandra> Hi Goran, -----Original Message----- From: Goran Li?ina [mailto:goran.licina at lss.hr] Sent: Saturday, June 20, 2009 12:12 AM To: Chandrashekhar B; Openvas-plugins at wald.intevation.org Subject: RE: [Openvas-plugins] Working on missing dependencies > Hi Chandra! >> -----Original Message----- >> From: Chandrashekhar B [mailto:bchandra at secpod.com] >> Sent: Wednesday, June 17, 2009 6:19 AM >> To: Goran Li?ina; Openvas-plugins at wald.intevation.org >> Subject: RE: [Openvas-plugins] Working on missing dependencies >> >> Hello Goran, >> >> Few comments I had, >> >> 1. cisco_ids_manager.nasl >> - Currently we are following 1.0 format for script_version >> - A separate KB item for "Cisco IDS manager" will be good to have apart >> from >> >> embedded KB > You mean something like Services/www/cisco_ids_manager? Yes, this is fine. > Is KB structure (data that plugins write in it) anywhere documented? Or > searching existing plugins is the only way to see how things are written > there? There's no document available on the KB namespace, existing Plugins is the way but, there's no strict convention. Thanks, Chandra. From goran.licina at lss.hr Sat Jun 20 22:04:06 2009 From: goran.licina at lss.hr (=?ISO-8859-2?Q?Goran_Li=E8ina?=) Date: Sat, 20 Jun 2009 22:04:06 +0200 Subject: [Openvas-plugins] Working on missing dependencies References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> <3511770E03634129AC28C6DA18FA9434@bchandra> <8A02A3DF683DEE42BE73187F4CA4444C086416@vlasta.lss-net.lss.hr> <08731C5547714E108FF9B8843B84D553@bchandra> Message-ID: <8A02A3DF683DEE42BE73187F4CA4444C086438@vlasta.lss-net.lss.hr> > > > Is KB structure (data that plugins write in it) anywhere documented? > Or > > searching existing plugins is the only way to see how things are > written > > there? > > There's no document available on the KB namespace, existing Plugins is > the > way but, there's no strict convention. > > Thanks, > Chandra. Hi Chandra, fixed plugins are in attachment. Please let us know if any further corrections are necessary. Thank you for your help and advices. We appreciate it! :) Best regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb -------------- next part -------------- A non-text attachment was scrubbed... Name: fixed_plugins.zip Type: application/x-zip-compressed Size: 4065 bytes Desc: fixed_plugins.zip Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090620/77a7213a/fixed_plugins.bin From goran.licina at lss.hr Mon Jun 22 13:08:22 2009 From: goran.licina at lss.hr (=?ISO-8859-2?Q?Goran_Li=E8ina?=) Date: Mon, 22 Jun 2009 13:08:22 +0200 Subject: [Openvas-plugins] putty_version_check.nasl and sympa_detect.nasl Message-ID: <8A02A3DF683DEE42BE73187F4CA4444C086457@vlasta.lss-net.lss.hr> Hi, plugin putty_version_check.nasl is listed in missing-deps.txt in SVN as missing dependency. Since there already exists plugin that does similar thing (secpod_putty_version.nasl) I guess it should be removed from missing-deps.txt? As I can see plugin putty_arbitrary_command_execution.nasl that depends on putty_version_check.nas, has already been updated to use secpod_putty_version.nasl instead. Also, we will start working on plugin sympa_detect.nasl if nobody else is already working on that one. Regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From bchandra at secpod.com Mon Jun 22 16:32:43 2009 From: bchandra at secpod.com (Chandrashekhar B) Date: Mon, 22 Jun 2009 20:02:43 +0530 Subject: [Openvas-plugins] putty_version_check.nasl and sympa_detect.nasl In-Reply-To: <8A02A3DF683DEE42BE73187F4CA4444C086457@vlasta.lss-net.lss.hr> References: <8A02A3DF683DEE42BE73187F4CA4444C086457@vlasta.lss-net.lss.hr> Message-ID: <133E7D4E036D434FB4AF9A15E80AA178@bchandra> Hi Goran, -----Original Message----- From: openvas-plugins-bounces at wald.intevation.org [mailto:openvas-plugins-bounces at wald.intevation.org] On Behalf Of Goran Licina Sent: Monday, June 22, 2009 4:38 PM To: Openvas-plugins at wald.intevation.org Subject: [Openvas-plugins] putty_version_check.nasl and sympa_detect.nasl > Hi, > plugin putty_version_check.nasl is listed in missing-deps.txt in SVN as > missing dependency. Since there already exists plugin that does similar > thing (secpod_putty_version.nasl) I guess it should be removed from > missing-deps.txt? > As I can see plugin putty_arbitrary_command_execution.nasl that depends > on putty_version_check.nas, has already been updated to use > secpod_putty_version.nasl instead. Removed from missing-deps.txt. Thanks for noticing! > Also, we will start working on plugin sympa_detect.nasl if nobody > else is already working on that one. No one has indicated so far. Please do. Thanks, Chandra. From bchandra at secpod.com Tue Jun 23 12:02:36 2009 From: bchandra at secpod.com (Chandrashekhar B) Date: Tue, 23 Jun 2009 15:32:36 +0530 Subject: [Openvas-plugins] Working on missing dependencies In-Reply-To: <8A02A3DF683DEE42BE73187F4CA4444C086438@vlasta.lss-net.lss.hr> References: <8A02A3DF683DEE42BE73187F4CA4444C085F36@vlasta.lss-net.lss.hr> <8A02A3DF683DEE42BE73187F4CA4444C086323@vlasta.lss-net.lss.hr> <3511770E03634129AC28C6DA18FA9434@bchandra> <8A02A3DF683DEE42BE73187F4CA4444C086416@vlasta.lss-net.lss.hr> <08731C5547714E108FF9B8843B84D553@bchandra> <8A02A3DF683DEE42BE73187F4CA4444C086438@vlasta.lss-net.lss.hr> Message-ID: Committed! Thanks, Chandra. -----Original Message----- From: Goran Li?ina [mailto:goran.licina at lss.hr] Sent: Sunday, June 21, 2009 1:34 AM To: Chandrashekhar B; Openvas-plugins at wald.intevation.org Subject: RE: [Openvas-plugins] Working on missing dependencies > > > Is KB structure (data that plugins write in it) anywhere documented? > Or > > searching existing plugins is the only way to see how things are > written > > there? > > There's no document available on the KB namespace, existing Plugins is > the > way but, there's no strict convention. > > Thanks, > Chandra. Hi Chandra, fixed plugins are in attachment. Please let us know if any further corrections are necessary. Thank you for your help and advices. We appreciate it! :) Best regards, Goran Licina -- Laboratory for Systems and Signals Department of Electronic Systems and Information Processing Faculty of Electrical Engineering and Computing University of Zagreb From jfs at computer.org Thu Jun 25 01:05:38 2009 From: jfs at computer.org (Javier =?iso-8859-1?Q?Fern=E1ndez-Sanguino_Pe=F1a?=) Date: Thu, 25 Jun 2009 01:05:38 +0200 Subject: [Openvas-plugins] [Openvas-discuss] Discontinuing openvas-plugins tarball? In-Reply-To: <20090423081146.GB11585@intevation.de> References: <20090423081146.GB11585@intevation.de> Message-ID: <20090624230538.GB16138@javifsp.no-ip.org> On Thu, Apr 23, 2009 at 10:11:46AM +0200, Michael Wiegand wrote: > I would like your opinions regarding the following issues: > > - What would be the consequences of discontinuing the tarball release? > There should not be installations which use only the tarball and never > sync, should there? No tarball means no package in the distributions. People using a distribution (such as Debian / Ubuntu cds) with no or limited Internet access would not be able to get plugins and, consequentely, would have a mostly useless tool. > - What mechanisms should be available for users who cannot sync using > rsync due to restrictions on firewall or proxy level? Full download of the content using HTTP(s) which (typically) is something allowed through corporate proxies (even if limited through user / password). > - Should openvasd force an initial sync during installation or just > display a notice that a sync is need to use OpenVAS? It should only display a notice. Plugin updates should always be driven by administrators. My 2c, Regards Javier -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: Digital signature Url : http://lists.wald.intevation.org/pipermail/openvas-plugins/attachments/20090625/1d25c005/attachment.pgp